Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-0236

Опубликовано: 16 мая 2016
Источник: debian
EPSS Низкий

Описание

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
filefixed1:5.19-1package
filenot-affectedwheezypackage
filenot-affectedsqueezepackage
php5fixed5.6.0~beta4+dfsg-1package
php5not-affectedwheezypackage
php5not-affectedsqueezepackage

Примечания

  • https://bugs.php.net/bug.php?id=67329

EPSS

Процентиль: 63%
0.0045
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

redhat
около 11 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

CVSS3: 7.5
nvd
около 9 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

CVSS3: 7.5
github
около 3 лет назад

file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage value in a CDF file, related to cdf.c and readcdf.c.

EPSS

Процентиль: 63%
0.0045
Низкий