Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-28cw-qr46-rx46

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x before 5.2.9 allows context-dependent attackers to cause a denial of service (crash) via a ZIP file that contains filenames with relative paths, which is not properly handled during extraction.

The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x before 5.2.9 allows context-dependent attackers to cause a denial of service (crash) via a ZIP file that contains filenames with relative paths, which is not properly handled during extraction.

EPSS

Процентиль: 84%
0.02169
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
около 16 лет назад

The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x before 5.2.9 allows context-dependent attackers to cause a denial of service (crash) via a ZIP file that contains filenames with relative paths, which is not properly handled during extraction.

redhat
больше 16 лет назад

The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x before 5.2.9 allows context-dependent attackers to cause a denial of service (crash) via a ZIP file that contains filenames with relative paths, which is not properly handled during extraction.

nvd
около 16 лет назад

The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x before 5.2.9 allows context-dependent attackers to cause a denial of service (crash) via a ZIP file that contains filenames with relative paths, which is not properly handled during extraction.

debian
около 16 лет назад

The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x befo ...

EPSS

Процентиль: 84%
0.02169
Низкий

Дефекты

CWE-20