|Category:||Ubuntu Local Security Checks|
|Title:||Ubuntu: Security Advisory for php7.4 (USN-4583-2)|
|Summary:||The remote host is missing an update for the 'php7.4'; package(s) announced via the USN-4583-2 advisory.|
The remote host is missing an update for the 'php7.4'
package(s) announced via the USN-4583-2 advisory.
USN-4583-1 fixed vulnerabilities in PHP. This update provides
the corresponding update for Ubuntu 20.10.
Original advisory details:
It was discovered that PHP incorrectly handled certain encrypt ciphers.
An attacker could possibly use this issue to decrease security or cause
incorrect encryption data. (CVE-2020-7069)
It was discorevered that PHP incorrectly handled certain HTTP cookies.
An attacker could possibly use this issue to forge cookie which is supposed to
be secure. (CVE-2020-7070)
'php7.4' package(s) on Ubuntu 20.10.
Please install the updated package(s).
Common Vulnerability Exposure (CVE) ID: CVE-2020-7069|
SuSE Security Announcement: openSUSE-SU-2020:1703 (Google Search)
SuSE Security Announcement: openSUSE-SU-2020:1767 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2020-7070
|Copyright||Copyright (C) 2020 Greenbone Networks GmbH|
|This is only one of 86218 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.