Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3709

Опубликовано: 19 окт. 2010
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

Отчет

This issue did not affect the version of PHP as shipped with Red Hat Enterprise Linux 3, 4 or 5.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5php53Affected
Red Hat Enterprise Linux 6phpFixedRHSA-2011:019503.02.2011

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=651206php: NULL pointer dereference in ZipArchive::getArchiveComment

EPSS

Процентиль: 91%
0.07032
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

nvd
больше 14 лет назад

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

debian
больше 14 лет назад

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 ...

github
около 3 лет назад

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

oracle-oval
больше 14 лет назад

ELSA-2011-0195: php security update (MODERATE)

EPSS

Процентиль: 91%
0.07032
Низкий

4.3 Medium

CVSS2