Логотип exploitDog
bind:"CVE-2022-31625" OR bind:"CVE-2021-21708"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-31625" OR bind:"CVE-2021-21708"

Количество 49

Количество 49

rocky логотип

RLSA-2022:8197

почти 3 года назад

Moderate: php security, bug fix, and enhancement update

EPSS: Низкий
rocky логотип

RLSA-2022:7624

почти 3 года назад

Moderate: php:8.0 security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-8197

почти 3 года назад

ELSA-2022-8197: php security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-7624

почти 3 года назад

ELSA-2022-7624: php:8.0 security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3997-1

почти 3 года назад

Security update for php7

EPSS: Низкий
ubuntu логотип

CVE-2022-31625

больше 3 лет назад

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2022-31625

больше 3 лет назад

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2022-31625

больше 3 лет назад

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2022-31625

около 1 месяца назад

Freeing unallocated memory in php_pgsql_free_params()

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2022-31625

больше 3 лет назад

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x belo ...

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2021-21708

больше 3 лет назад

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.

CVSS3: 8.2
EPSS: Низкий
redhat логотип

CVE-2021-21708

больше 3 лет назад

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2021-21708

больше 3 лет назад

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.

CVSS3: 8.2
EPSS: Низкий
msrc логотип

CVE-2021-21708

около 1 месяца назад

UAF due to php_filter_float() failing

CVSS3: 8.2
EPSS: Низкий
debian логотип

CVE-2021-21708

больше 3 лет назад

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x belo ...

CVSS3: 8.2
EPSS: Низкий
redos логотип

ROS-20220826-01

около 3 лет назад

Множественные уязвимости PHP

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4069-1

почти 3 года назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4068-1

почти 3 года назад

Security update for php74

EPSS: Низкий
rocky логотип

RLSA-2022:6158

около 3 лет назад

Moderate: php:7.4 security update

EPSS: Низкий
github логотип

GHSA-wg63-8xjw-5wvx

больше 3 лет назад

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2022:8197

Moderate: php security, bug fix, and enhancement update

почти 3 года назад
rocky логотип
RLSA-2022:7624

Moderate: php:8.0 security, bug fix, and enhancement update

почти 3 года назад
oracle-oval логотип
ELSA-2022-8197

ELSA-2022-8197: php security, bug fix, and enhancement update (MODERATE)

почти 3 года назад
oracle-oval логотип
ELSA-2022-7624

ELSA-2022-7624: php:8.0 security, bug fix, and enhancement update (MODERATE)

почти 3 года назад
suse-cvrf логотип
SUSE-SU-2022:3997-1

Security update for php7

почти 3 года назад
ubuntu логотип
CVE-2022-31625

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 8.1
1%
Низкий
больше 3 лет назад
redhat логотип
CVE-2022-31625

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 7
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-31625

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 8.1
1%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-31625

Freeing unallocated memory in php_pgsql_free_params()

CVSS3: 8.1
1%
Низкий
около 1 месяца назад
debian логотип
CVE-2022-31625

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x belo ...

CVSS3: 8.1
1%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2021-21708

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.

CVSS3: 8.2
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2021-21708

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2021-21708

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.

CVSS3: 8.2
0%
Низкий
больше 3 лет назад
msrc логотип
CVE-2021-21708

UAF due to php_filter_float() failing

CVSS3: 8.2
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2021-21708

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x belo ...

CVSS3: 8.2
0%
Низкий
больше 3 лет назад
redos логотип
ROS-20220826-01

Множественные уязвимости PHP

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:4069-1

Security update for php7

почти 3 года назад
suse-cvrf логотип
SUSE-SU-2022:4068-1

Security update for php74

почти 3 года назад
rocky логотип
RLSA-2022:6158

Moderate: php:7.4 security update

1%
Низкий
около 3 лет назад
github логотип
GHSA-wg63-8xjw-5wvx

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу