[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

FEDORA-2019-af7bef7165 -- Fedora 29 php-brumann-polyfill-unserialize-1.0.3-1.fc29

ID: oval:org.secpod.oval:def:116810Date: (C)2019-07-02   (M)2023-11-10
Class: PATCHFamily: unix




Backports unserialize options introduced in PHP 7.0 to older PHP versions. This was originally designed as a Proof of Concept for Symfony Issue [#21090]. You can use this package in projects that rely on PHP versions older than PHP 7.0. In case you are using PHP 7.0+ the original unserialize will be used instead. From the [documentation]: ...Warning: Do not pass untrusted user input to unserialize. Unserialization can result in code being loaded and executed due to object instantiation and autoloading, and a malicious user may be able to exploit this. This warning holds true even when `allowed_classes` is used. Autoloader: /usr/share/php/Brumann/Polyfill/autoload.php

Platform:
Fedora 29
Product:
php-brumann-polyfill-unserialize
Reference:
FEDORA-2019-af7bef7165
CVE-2019-11831
CVE-2019-11830
CVE    2
CVE-2019-11831
CVE-2019-11830

© SecPod Technologies