Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-1376

Опубликовано: 10 мар. 2007
Источник: ubuntu
Приоритет: untriaged
EPSS Средний
CVSS2: 7.5

Описание

The shmop functions in PHP before 4.4.5, and before 5.2.1 in the 5.x series, do not verify that their arguments correspond to a shmop resource, which allows context-dependent attackers to read and write arbitrary memory locations via arguments associated with an inappropriate resource, as demonstrated by a GD Image resource.

РелизСтатусПримечание
dapper

released

5.1.2-1ubuntu3.9
devel

released

5.2.3-1ubuntu5
edgy

released

5.1.6-1ubuntu2.6
feisty

released

5.2.1-0ubuntu1
upstream

released

5.2.1

Показывать по

EPSS

Процентиль: 93%
0.12155
Средний

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 18 лет назад

The shmop functions in PHP before 4.4.5, and before 5.2.1 in the 5.x series, do not verify that their arguments correspond to a shmop resource, which allows context-dependent attackers to read and write arbitrary memory locations via arguments associated with an inappropriate resource, as demonstrated by a GD Image resource.

debian
больше 18 лет назад

The shmop functions in PHP before 4.4.5, and before 5.2.1 in the 5.x s ...

github
около 3 лет назад

The shmop functions in PHP before 4.4.5, and before 5.2.1 in the 5.x series, do not verify that their arguments correspond to a shmop resource, which allows context-dependent attackers to read and write arbitrary memory locations via arguments associated with an inappropriate resource, as demonstrated by a GD Image resource.

EPSS

Процентиль: 93%
0.12155
Средний

7.5 High

CVSS2