Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0807

Опубликовано: 27 янв. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.1

Описание

Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature in the Suhosin extension before 0.9.33 for PHP, when suhosin.cookie.encrypt and suhosin.multiheader are enabled, might allow remote attackers to execute arbitrary code via a long string that is used in a Set-Cookie HTTP header.

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life
precise

not-affected

0.9.33-1
quantal

not-affected

0.9.33-3build1
raring

DNE

saucy

DNE

Показывать по

Ссылки на источники

EPSS

Процентиль: 89%
0.04812
Низкий

5.1 Medium

CVSS2

Связанные уязвимости

nvd
почти 14 лет назад

Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature in the Suhosin extension before 0.9.33 for PHP, when suhosin.cookie.encrypt and suhosin.multiheader are enabled, might allow remote attackers to execute arbitrary code via a long string that is used in a Set-Cookie HTTP header.

debian
почти 14 лет назад

Stack-based buffer overflow in the suhosin_encrypt_single_cookie funct ...

github
больше 3 лет назад

Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature in the Suhosin extension before 0.9.33 for PHP, when suhosin.cookie.encrypt and suhosin.multiheader are enabled, might allow remote attackers to execute arbitrary code via a long string that is used in a Set-Cookie HTTP header.

EPSS

Процентиль: 89%
0.04812
Низкий

5.1 Medium

CVSS2