PHP — популярный язык сценариев общего назначения, особенно подходящий для веб-разработки.
Релизный цикл, информация об уязвимостях
График релизов
Количество 3 843
CVE-2011-1470
The Zip extension in PHP before 5.3.6 allows context-dependent attacke ...

CVE-2011-1469
Unspecified vulnerability in the Streams component in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) by accessing an ftp:// URL during use of an HTTP proxy with the FTP wrapper.
CVE-2011-1469
Unspecified vulnerability in the Streams component in PHP before 5.3.6 ...

CVE-2011-1468
Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of service (memory consumption) via (1) plaintext data to the openssl_encrypt function or (2) ciphertext data to the openssl_decrypt function.
CVE-2011-1468
Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 mig ...

CVE-2011-1467
Unspecified vulnerability in the NumberFormatter::setSymbol (aka numfmt_set_symbol) function in the Intl extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via an invalid argument, a related issue to CVE-2010-4409.
CVE-2011-1467
Unspecified vulnerability in the NumberFormatter::setSymbol (aka numfm ...

CVE-2011-1466
Integer overflow in the SdnToJulian function in the Calendar extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via a large integer in the first argument to the cal_from_jd function.
CVE-2011-1466
Integer overflow in the SdnToJulian function in the Calendar extension ...

CVE-2011-1464
Buffer overflow in the strval function in PHP before 5.3.6, when the precision configuration option has a large value, might allow context-dependent attackers to cause a denial of service (application crash) via a small numerical value in the argument.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
CVE-2011-1470 The Zip extension in PHP before 5.3.6 allows context-dependent attacke ... | CVSS2: 4.3 | 5% Низкий | больше 14 лет назад | |
![]() | CVE-2011-1469 Unspecified vulnerability in the Streams component in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) by accessing an ftp:// URL during use of an HTTP proxy with the FTP wrapper. | CVSS2: 4.3 | 6% Низкий | больше 14 лет назад |
CVE-2011-1469 Unspecified vulnerability in the Streams component in PHP before 5.3.6 ... | CVSS2: 4.3 | 6% Низкий | больше 14 лет назад | |
![]() | CVE-2011-1468 Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of service (memory consumption) via (1) plaintext data to the openssl_encrypt function or (2) ciphertext data to the openssl_decrypt function. | CVSS2: 4.3 | 14% Средний | больше 14 лет назад |
CVE-2011-1468 Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 mig ... | CVSS2: 4.3 | 14% Средний | больше 14 лет назад | |
![]() | CVE-2011-1467 Unspecified vulnerability in the NumberFormatter::setSymbol (aka numfmt_set_symbol) function in the Intl extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via an invalid argument, a related issue to CVE-2010-4409. | CVSS2: 5 | 10% Средний | больше 14 лет назад |
CVE-2011-1467 Unspecified vulnerability in the NumberFormatter::setSymbol (aka numfm ... | CVSS2: 5 | 10% Средний | больше 14 лет назад | |
![]() | CVE-2011-1466 Integer overflow in the SdnToJulian function in the Calendar extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via a large integer in the first argument to the cal_from_jd function. | CVSS2: 5 | 19% Средний | больше 14 лет назад |
CVE-2011-1466 Integer overflow in the SdnToJulian function in the Calendar extension ... | CVSS2: 5 | 19% Средний | больше 14 лет назад | |
![]() | CVE-2011-1464 Buffer overflow in the strval function in PHP before 5.3.6, when the precision configuration option has a large value, might allow context-dependent attackers to cause a denial of service (application crash) via a small numerical value in the argument. | CVSS2: 4.3 | 1% Низкий | больше 14 лет назад |
Уязвимостей на страницу