Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4113

Опубликовано: 13 июл. 2013
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 6.8

Описание

ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted document that is processed by the xml_parse_into_struct function.

РелизСтатусПримечание
devel

released

5.5.0+dfsg-15ubuntu1
lucid

released

5.3.2-1ubuntu4.20
precise

released

5.3.10-1ubuntu3.7
quantal

released

5.4.6-1ubuntu1.3
raring

released

5.4.9-4ubuntu2.2
upstream

released

5.3.27

Показывать по

EPSS

Процентиль: 93%
0.09498
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted document that is processed by the xml_parse_into_struct function.

nvd
около 12 лет назад

ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted document that is processed by the xml_parse_into_struct function.

debian
около 12 лет назад

ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing ...

github
около 3 лет назад

ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted document that is processed by the xml_parse_into_struct function.

oracle-oval
около 12 лет назад

ELSA-2013-1050: php53 security update (CRITICAL)

EPSS

Процентиль: 93%
0.09498
Низкий

6.8 Medium

CVSS2