Логотип exploitDog
bind:"GHSA-h8qx-36w6-3rc4" OR bind:"CVE-2021-21703"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-h8qx-36w6-3rc4" OR bind:"CVE-2021-21703"

Количество 21

Количество 21

github логотип

GHSA-h8qx-36w6-3rc4

больше 3 лет назад

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2021-21703

около 4 лет назад

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2021-21703

около 4 лет назад

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 6.4
EPSS: Низкий
nvd логотип

CVE-2021-21703

около 4 лет назад

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-21703

около 1 месяца назад

PHP-FPM memory access in root process leading to privilege escalation

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2021-21703

около 4 лет назад

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 a ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3727-1

почти 4 года назад

Security update for php72

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3726-1

почти 4 года назад

Security update for php74

EPSS: Низкий
fstec логотип

BDU:2021-05228

около 4 лет назад

Уязвимость компонента SAPI расширения PHP-FPM интерпретатора языка программирования PHP, позволяющая нарушителю повысить свои привилегии до root

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3943-1

почти 4 года назад

Recommended update for php7

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1570-1

почти 4 года назад

Recommended update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3943-1

почти 4 года назад

Recommended update for php7

EPSS: Низкий
rocky логотип

RLSA-2022:1935

больше 3 лет назад

Moderate: php:7.4 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-1935

больше 3 лет назад

ELSA-2022-1935: php:7.4 security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3661-1

около 3 лет назад

Security update for php8

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0679-1

больше 3 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0679-1

больше 3 лет назад

Security update for php7

EPSS: Низкий
redos логотип

ROS-20220826-01

около 3 лет назад

Множественные уязвимости PHP

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4069-1

почти 3 года назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4068-1

почти 3 года назад

Security update for php74

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-h8qx-36w6-3rc4

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 7
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2021-21703

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
redhat логотип
CVE-2021-21703

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 6.4
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2021-21703

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-21703

PHP-FPM memory access in root process leading to privilege escalation

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2021-21703

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 a ...

CVSS3: 7.8
0%
Низкий
около 4 лет назад
suse-cvrf логотип
SUSE-SU-2021:3727-1

Security update for php72

0%
Низкий
почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:3726-1

Security update for php74

0%
Низкий
почти 4 года назад
fstec логотип
BDU:2021-05228

Уязвимость компонента SAPI расширения PHP-FPM интерпретатора языка программирования PHP, позволяющая нарушителю повысить свои привилегии до root

CVSS3: 7.8
0%
Низкий
около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3943-1

Recommended update for php7

почти 4 года назад
suse-cvrf логотип
openSUSE-SU-2021:1570-1

Recommended update for php7

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:3943-1

Recommended update for php7

почти 4 года назад
rocky логотип
RLSA-2022:1935

Moderate: php:7.4 security update

больше 3 лет назад
oracle-oval логотип
ELSA-2022-1935

ELSA-2022-1935: php:7.4 security update (MODERATE)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:3661-1

Security update for php8

около 3 лет назад
suse-cvrf логотип
openSUSE-SU-2022:0679-1

Security update for php7

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:0679-1

Security update for php7

больше 3 лет назад
redos логотип
ROS-20220826-01

Множественные уязвимости PHP

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:4069-1

Security update for php7

почти 3 года назад
suse-cvrf логотип
SUSE-SU-2022:4068-1

Security update for php74

почти 3 года назад

Уязвимостей на страницу