Untriaged
Activity log
- Created suggestion
The plural form formula in ngettext family of calls in …
The plural form formula in ngettext family of calls in php-gettext before 1.0.12 allows remote attackers to execute arbitrary code.
References
-
-
-
[oss-security] 20170118 Re: CVE Request: php-gettext: Arbitrary code execution in select_string, ngettext and npgettext count parameter mailing-listx_transferredx_refsource_MLIST
-
-
-
[Full Disclosure] 20160815 php-gettext php code execution in select_string, ngettext, npgettext count parameter <1.0.12 mailing-listx_transferredx_refsource_MLIST
-
Affected products
php-gettext
- ==before 1.0.12
Matching in nixpkgs
pkgs.phpExtensions.gettext
PHP upstream extension: gettext
pkgs.php81Extensions.gettext
PHP upstream extension: gettext
pkgs.php82Extensions.gettext
PHP upstream extension: gettext
pkgs.php83Extensions.gettext
PHP upstream extension: gettext
pkgs.php84Extensions.gettext
PHP upstream extension: gettext
Package maintainers
-
@talyz Kim Lindberger <kim.lindberger@gmail.com>
-
@aanderse Aaron Andersen <aaron@fosslib.net>
-
@piotrkwiecinski Piotr Kwiecinski <piokwiecinski+nixpkgs@gmail.com>
-
@Ma27 Maximilian Bosch <maximilian@mbosch.me>
-
@drupol Pol Dellaiera <pol.dellaiera@protonmail.com>