Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-3292

Опубликовано: 22 сент. 2009
Источник: debian

Описание

Unspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has unknown impact and attack vectors related to "missing sanity checks around exif processing."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
php5fixed5.2.11.dfsg.1-1package

Примечания

  • unknown impact, it is related to missing sanity checks

  • when determining the length of sections of jpg headers

  • a missing limit on the nesting level of TIFF files, and

  • missing EOF checks, possibly leading to NULL dereferences

  • experimental is likely to be affected (as of 5.3.0)

Связанные уязвимости

ubuntu
больше 16 лет назад

Unspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has unknown impact and attack vectors related to "missing sanity checks around exif processing."

redhat
больше 16 лет назад

Unspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has unknown impact and attack vectors related to "missing sanity checks around exif processing."

nvd
больше 16 лет назад

Unspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has unknown impact and attack vectors related to "missing sanity checks around exif processing."

github
почти 4 года назад

Unspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has unknown impact and attack vectors related to "missing sanity checks around exif processing."

oracle-oval
около 16 лет назад

ELSA-2010-0040: php security update (MODERATE)