Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-1917

Опубликовано: 11 мая 2010
Источник: redhat
CVSS2: 2.6
EPSS Низкий

Описание

Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (PHP crash) via a crafted first argument to the fnmatch function, as demonstrated using a long string.

Отчет

This issue is not planned to be fixed in Red Hat Enterprise Linux 3 due to this product being in Production 3 of its maintenance life-cycle, where only qualified security errata of important and critical impact are addressed. For further information about the Errata Support Policy, visit: http://www.redhat.com/security/updates/errata

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3phpAffected
Red Hat Enterprise Linux 6phpNot affected
Red Hat Enterprise Linux 4phpFixedRHSA-2010:091929.11.2010
Red Hat Enterprise Linux 5phpFixedRHSA-2010:091929.11.2010

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=617232php: fnmatch long pattern stack memory exhaustion (MOPS-2010-021)

EPSS

Процентиль: 77%
0.01101
Низкий

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (PHP crash) via a crafted first argument to the fnmatch function, as demonstrated using a long string.

nvd
больше 15 лет назад

Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (PHP crash) via a crafted first argument to the fnmatch function, as demonstrated using a long string.

debian
больше 15 лет назад

Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 thro ...

github
около 3 лет назад

Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (PHP crash) via a crafted first argument to the fnmatch function, as demonstrated using a long string.

oracle-oval
больше 14 лет назад

ELSA-2010-0919: php security update (MODERATE)

EPSS

Процентиль: 77%
0.01101
Низкий

2.6 Low

CVSS2