Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-0236

Опубликовано: 16 мая 2016
Источник: debian
EPSS Низкий

Описание

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
filefixed1:5.19-1package
filenot-affectedwheezypackage
filenot-affectedsqueezepackage
php5fixed5.6.0~beta4+dfsg-1package
php5not-affectedwheezypackage
php5not-affectedsqueezepackage

Примечания

  • https://bugs.php.net/bug.php?id=67329

EPSS

Процентиль: 69%
0.00582
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 10 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

redhat
почти 12 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

CVSS3: 7.5
nvd
почти 10 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

CVSS3: 7.5
github
почти 4 года назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

EPSS

Процентиль: 69%
0.00582
Низкий