Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-1490

Опубликовано: 29 мар. 2006
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

PHP before 5.1.3-RC1 might allow remote attackers to obtain portions of memory via crafted binary data sent to a script that processes user input in the html_entity_decode function and sends the encoded results back to the client, aka a "binary safety" issue. NOTE: this issue has been referred to as a "memory leak," but it is an information leak that discloses memory contents.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

edgy

released

4.4.2-1.1
feisty

DNE

gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

5.1.2-1ubuntu3.9
devel

released

5.2.3-1ubuntu5
edgy

released

5.1.6-1ubuntu2.6
feisty

released

5.2.1-0ubuntu1.4
gutsy

released

5.2.3-1ubuntu5
hardy

released

5.2.3-1ubuntu5
intrepid

released

5.2.3-1ubuntu5
jaunty

released

5.2.3-1ubuntu5
karmic

released

5.2.3-1ubuntu5
upstream

needs-triage

Показывать по

EPSS

Процентиль: 97%
0.33827
Средний

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 19 лет назад

PHP before 5.1.3-RC1 might allow remote attackers to obtain portions of memory via crafted binary data sent to a script that processes user input in the html_entity_decode function and sends the encoded results back to the client, aka a "binary safety" issue. NOTE: this issue has been referred to as a "memory leak," but it is an information leak that discloses memory contents.

nvd
больше 19 лет назад

PHP before 5.1.3-RC1 might allow remote attackers to obtain portions of memory via crafted binary data sent to a script that processes user input in the html_entity_decode function and sends the encoded results back to the client, aka a "binary safety" issue. NOTE: this issue has been referred to as a "memory leak," but it is an information leak that discloses memory contents.

debian
больше 19 лет назад

PHP before 5.1.3-RC1 might allow remote attackers to obtain portions o ...

github
больше 3 лет назад

PHP before 5.1.3-RC1 might allow remote attackers to obtain portions of memory via crafted binary data sent to a script that processes user input in the html_entity_decode function and sends the encoded results back to the client, aka a "binary safety" issue. NOTE: this issue has been referred to as a "memory leak," but it is an information leak that discloses memory contents.

EPSS

Процентиль: 97%
0.33827
Средний

5 Medium

CVSS2