Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-8626

Опубликовано: 23 нояб. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Stack-based buffer overflow in the date_from_ISO8601 function in ext/xmlrpc/libxmlrpc/xmlrpc.c in PHP before 5.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by including a timezone field in a date, leading to improper XML-RPC encoding.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

lucid

not-affected

5.3.2-1ubuntu4.28
precise

not-affected

trusty

not-affected

trusty/esm

not-affected

upstream

released

5.2.9.dfsg.1-1
utopic

not-affected

Показывать по

EPSS

Процентиль: 88%
0.04168
Низкий

7.5 High

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

Stack-based buffer overflow in the date_from_ISO8601 function in ext/xmlrpc/libxmlrpc/xmlrpc.c in PHP before 5.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by including a timezone field in a date, leading to improper XML-RPC encoding.

nvd
больше 10 лет назад

Stack-based buffer overflow in the date_from_ISO8601 function in ext/xmlrpc/libxmlrpc/xmlrpc.c in PHP before 5.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by including a timezone field in a date, leading to improper XML-RPC encoding.

debian
больше 10 лет назад

Stack-based buffer overflow in the date_from_ISO8601 function in ext/x ...

github
около 3 лет назад

Stack-based buffer overflow in the date_from_ISO8601 function in ext/xmlrpc/libxmlrpc/xmlrpc.c in PHP before 5.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by including a timezone field in a date, leading to improper XML-RPC encoding.

oracle-oval
больше 10 лет назад

ELSA-2014-1824: php security update (IMPORTANT)

EPSS

Процентиль: 88%
0.04168
Низкий

7.5 High

CVSS2