Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
MGASA-2019-0053
See a problem?
Please try reporting it
to the source
first.
Source
https://advisories.mageia.org/MGASA-2019-0053.html
Import Source
https://advisories.mageia.org/MGASA-2019-0053.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2019-0053
Published
2019-01-30T19:39:18Z
Modified
2026-04-16T04:26:32Z
Summary
Updated php-tcpdf packages fix security vulnerabilities
Details
Fix for security vulnerability: Using the phar:// wrapper it was possible to trigger the unserialization of user provided data.
Merge various fixes for PHP 7.3 compatibility and security.
References
https://advisories.mageia.org/MGASA-2019-0053.html
https://bugs.mageia.org/show_bug.cgi?id=23699
https://github.com/tecnickcom/TCPDF/blob/master/CHANGELOG.TXT
Credits
Mageia - COORDINATOR
https://wiki.mageia.org/en/Packages_Security_Team
Affected packages
Mageia:6
/
php-tcpdf
Package
Name
php-tcpdf
Purl
pkg:rpm/mageia/php-tcpdf?arch=source&distro=mageia-6
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
6.2.26-1.mga6
Ecosystem specific
{ "section": "core" }
Database specific
source
"https://advisories.mageia.org/MGASA-2019-0053.json"
MGASA-2019-0053 - OSV