Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-3063

Опубликовано: 20 авг. 2010
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 5

Описание

The php_mysqlnd_read_error_from_line function in the Mysqlnd extension in PHP 5.3 through 5.3.2 does not properly calculate a buffer length, which allows context-dependent attackers to trigger a heap-based buffer overflow via crafted inputs that cause a negative length value to be used.

РелизСтатусПримечание
dapper

not-affected

code not built
devel

not-affected

hardy

not-affected

code not built
jaunty

not-affected

code not built
karmic

not-affected

code not built
lucid

not-affected

code not built
upstream

released

5.3.3

Показывать по

Ссылки на источники

EPSS

Процентиль: 57%
0.00349
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 15 лет назад

The php_mysqlnd_read_error_from_line function in the Mysqlnd extension in PHP 5.3 through 5.3.2 does not properly calculate a buffer length, which allows context-dependent attackers to trigger a heap-based buffer overflow via crafted inputs that cause a negative length value to be used.

nvd
почти 15 лет назад

The php_mysqlnd_read_error_from_line function in the Mysqlnd extension in PHP 5.3 through 5.3.2 does not properly calculate a buffer length, which allows context-dependent attackers to trigger a heap-based buffer overflow via crafted inputs that cause a negative length value to be used.

debian
почти 15 лет назад

The php_mysqlnd_read_error_from_line function in the Mysqlnd extension ...

github
около 3 лет назад

The php_mysqlnd_read_error_from_line function in the Mysqlnd extension in PHP 5.3 through 5.3.2 does not properly calculate a buffer length, which allows context-dependent attackers to trigger a heap-based buffer overflow via crafted inputs that cause a negative length value to be used.

EPSS

Процентиль: 57%
0.00349
Низкий

5 Medium

CVSS2