Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-3710

Опубликовано: 05 нояб. 2014
Источник: ubuntu
Приоритет: low
CVSS2: 5

Описание

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

РелизСтатусПримечание
devel

released

1:5.20-1ubuntu2
esm-infra-legacy/trusty

not-affected

1:5.14-2ubuntu3.3
lucid

released

5.03-5ubuntu1.5
precise

released

5.09-2ubuntu0.6
trusty

released

1:5.14-2ubuntu3.3
trusty/esm

not-affected

1:5.14-2ubuntu3.3
upstream

needs-triage

utopic

released

1:5.19-1ubuntu1.2

Показывать по

РелизСтатусПримечание
devel

released

5.5.12+dfsg-2ubuntu5
esm-infra-legacy/trusty

not-affected

5.5.9+dfsg-1ubuntu4.5
lucid

released

5.3.2-1ubuntu4.28
precise

released

5.3.10-1ubuntu3.15
trusty

released

5.5.9+dfsg-1ubuntu4.5
trusty/esm

not-affected

5.5.9+dfsg-1ubuntu4.5
upstream

needs-triage

utopic

released

5.5.12+dfsg-2ubuntu4.1

Показывать по

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

nvd
больше 10 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

debian
больше 10 лет назад

The donote function in readelf.c in file through 5.20, as used in the ...

github
около 3 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

oracle-oval
больше 10 лет назад

ELSA-2014-1768: php53 security update (IMPORTANT)

5 Medium

CVSS2