Количество 34
Количество 34
BDU:2024-07680
Уязвимость интерпретатора языка программирования PHP, позволяющая нарушителю обойти существующие ограничения безопасности
ROS-20241015-15
Множественные уязвимости php
ROS-20241015-14
Множественные уязвимости php
ROS-20241015-11
Множественные уязвимости php
ALT-PU-2024-18047
ALT-PU-2024-18047: package `php8.1-soap` update to version 8.1.30-alt1
ALT-PU-2024-17955
ALT-PU-2024-17955: package `php8.3-soap` update to version 8.3.12-alt1
ALT-PU-2024-17951
ALT-PU-2024-17951: package `php8.1-soap` update to version 8.1.30-alt1
ALT-PU-2024-17912
ALT-PU-2024-17912: package `php8.2-soap` update to version 8.2.24-alt1
ALT-PU-2024-13710
ALT-PU-2024-13710: package `php8.1` update to version 8.1.30-alt1
ALT-PU-2024-13522
ALT-PU-2024-13522: package `php8.1` update to version 8.1.30-alt1
ALT-PU-2024-13465
ALT-PU-2024-13465: package `php8.2` update to version 8.2.24-alt1
ALT-PU-2024-13449
ALT-PU-2024-13449: package `php8.3` update to version 8.3.12-alt1
ALT-PU-2024-18037
ALT-PU-2024-18037: package `php8.2-soap` update to version 8.2.24-alt1
ALT-PU-2024-13711
ALT-PU-2024-13711: package `php8.2` update to version 8.2.24-alt1
ALT-PU-2021-2943
ALT-PU-2021-2943: package `php7` update to version 7.4.24-alt1
CVE-2024-9026
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content. Additionally, if PHP-FPM is configured to use syslog output, it may be possible to further remove log data using the same vulnerability.
CVE-2024-9026
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content. Additionally, if PHP-FPM is configured to use syslog output, it may be possible to further remove log data using the same vulnerability.
CVE-2024-9026
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content. Additionally, if PHP-FPM is configured to use syslog output, it may be possible to further remove log data using the same vulnerability.
CVE-2024-9026
PHP-FPM logs from children may be altered
CVE-2024-9026
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2024-07680 Уязвимость интерпретатора языка программирования PHP, позволяющая нарушителю обойти существующие ограничения безопасности | CVSS3: 9.8 | 0% Низкий | почти 2 года назад | |
ROS-20241015-15 Множественные уязвимости php | CVSS3: 9.8 | почти 2 года назад | ||
ROS-20241015-14 Множественные уязвимости php | CVSS3: 9.8 | почти 2 года назад | ||
ROS-20241015-11 Множественные уязвимости php | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-18047 ALT-PU-2024-18047: package `php8.1-soap` update to version 8.1.30-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-17955 ALT-PU-2024-17955: package `php8.3-soap` update to version 8.3.12-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-17951 ALT-PU-2024-17951: package `php8.1-soap` update to version 8.1.30-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-17912 ALT-PU-2024-17912: package `php8.2-soap` update to version 8.2.24-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-13710 ALT-PU-2024-13710: package `php8.1` update to version 8.1.30-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-13522 ALT-PU-2024-13522: package `php8.1` update to version 8.1.30-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-13465 ALT-PU-2024-13465: package `php8.2` update to version 8.2.24-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-13449 ALT-PU-2024-13449: package `php8.3` update to version 8.3.12-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-18037 ALT-PU-2024-18037: package `php8.2-soap` update to version 8.2.24-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2024-13711 ALT-PU-2024-13711: package `php8.2` update to version 8.2.24-alt1 | CVSS3: 9.8 | почти 2 года назад | ||
ALT-PU-2021-2943 ALT-PU-2021-2943: package `php7` update to version 7.4.24-alt1 | CVSS3: 9.8 | почти 5 лет назад | ||
CVE-2024-9026 In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content. Additionally, if PHP-FPM is configured to use syslog output, it may be possible to further remove log data using the same vulnerability. | CVSS3: 3.3 | 0% Низкий | почти 2 года назад | |
CVE-2024-9026 In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content. Additionally, if PHP-FPM is configured to use syslog output, it may be possible to further remove log data using the same vulnerability. | CVSS3: 3.3 | 0% Низкий | почти 2 года назад | |
CVE-2024-9026 In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content. Additionally, if PHP-FPM is configured to use syslog output, it may be possible to further remove log data using the same vulnerability. | CVSS3: 3.3 | 0% Низкий | почти 2 года назад | |
CVE-2024-9026 PHP-FPM logs from children may be altered | CVSS3: 3.3 | 0% Низкий | почти 2 года назад | |
CVE-2024-9026 In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before ... | CVSS3: 3.3 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу