Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-4049

Опубликовано: 18 июн. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 5.1

Описание

Heap-based buffer overflow in the php_parserr function in ext/standard/dns.c in PHP 5.6.0beta4 and earlier allows remote servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DNS TXT record, related to the dns_get_record function.

РелизСтатусПримечание
devel

released

5.5.12+dfsg-2ubuntu2
esm-infra-legacy/trusty

not-affected

5.5.9+dfsg-1ubuntu4.1
lucid

released

5.3.2-1ubuntu4.25
precise

released

5.3.10-1ubuntu3.12
saucy

released

5.5.3+dfsg-1ubuntu2.4
trusty

released

5.5.9+dfsg-1ubuntu4.1
trusty/esm

not-affected

5.5.9+dfsg-1ubuntu4.1
upstream

released

5.6.0~beta4+dfsg-3

Показывать по

5.1 Medium

CVSS2

Связанные уязвимости

redhat
около 11 лет назад

Heap-based buffer overflow in the php_parserr function in ext/standard/dns.c in PHP 5.6.0beta4 and earlier allows remote servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DNS TXT record, related to the dns_get_record function.

nvd
около 11 лет назад

Heap-based buffer overflow in the php_parserr function in ext/standard/dns.c in PHP 5.6.0beta4 and earlier allows remote servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DNS TXT record, related to the dns_get_record function.

debian
около 11 лет назад

Heap-based buffer overflow in the php_parserr function in ext/standard ...

github
около 3 лет назад

Heap-based buffer overflow in the php_parserr function in ext/standard/dns.c in PHP 5.6.0beta4 and earlier allows remote servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DNS TXT record, related to the dns_get_record function.

fstec
около 11 лет назад

Уязвимость программного обеспечения PHP, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

5.1 Medium

CVSS2

Уязвимость CVE-2014-4049