Solution
Please Install the Updated Packages.
Insight
A vulnerability was discovered and corrected in php-intl:
Integer overflow in the NumberFormatter::getSymbol (aka numfmt_get_symbol) function in PHP 5.3.3 and earlier allows context-dependent attackers to cause a denial of service (application crash) via an invalid argument (CVE-2010-4409).
The updated packages have been upgraded to php-intl-1.1.2 and patched to correct this issue.
Affected
php-intl on Mandriva Enterprise Server 5,
Mandriva Enterprise Server 5/X86_64
Severity
Classification
-
CVE CVE-2010-4409 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities