Логотип exploitDog
bind:"GHSA-3r8x-r93p-fr32" OR bind:"CVE-2017-16642"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-3r8x-r93p-fr32" OR bind:"CVE-2017-16642"

Количество 11

Количество 11

github логотип

GHSA-3r8x-r93p-fr32

около 3 лет назад

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2017-16642

больше 7 лет назад

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2017-16642

больше 7 лет назад

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 2.9
EPSS: Средний
nvd логотип

CVE-2017-16642

больше 7 лет назад

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2017-16642

больше 7 лет назад

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an e ...

CVSS3: 7.5
EPSS: Средний
fstec логотип

BDU:2022-02423

больше 7 лет назад

Уязвимость компонента ext/date/lib/parse_date.c интерпретатора языка программирования PHP, позволяющая нарушителю оказать воздействие на конфиденциальность информации

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2017:3240-1

больше 7 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0003-1

больше 7 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:3237-1

больше 7 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:3329-1

больше 7 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:3277-1

больше 7 лет назад

Security update for php5

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3r8x-r93p-fr32

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 7.5
14%
Средний
около 3 лет назад
ubuntu логотип
CVE-2017-16642

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 7.5
14%
Средний
больше 7 лет назад
redhat логотип
CVE-2017-16642

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 2.9
14%
Средний
больше 7 лет назад
nvd логотип
CVE-2017-16642

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: this is a different issue than CVE-2017-11145.

CVSS3: 7.5
14%
Средний
больше 7 лет назад
debian логотип
CVE-2017-16642

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an e ...

CVSS3: 7.5
14%
Средний
больше 7 лет назад
fstec логотип
BDU:2022-02423

Уязвимость компонента ext/date/lib/parse_date.c интерпретатора языка программирования PHP, позволяющая нарушителю оказать воздействие на конфиденциальность информации

CVSS3: 7.5
14%
Средний
больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2017:3240-1

Security update for php7

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:0003-1

Security update for php53

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:3237-1

Security update for php7

больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2017:3329-1

Security update for php5

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:3277-1

Security update for php5

больше 7 лет назад

Уязвимостей на страницу