Количество 16
Количество 16

CVE-2014-9652
The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVE-2014-9652
The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVE-2014-9652
The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.
CVE-2014-9652
The mconvert function in softmagic.c in file before 5.21, as used in t ...
GHSA-4mj2-cv5h-vvmg
The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

BDU:2015-09882
Уязвимость интерпретатора PHP, позволяющая удалённому злоумышленнику получить доступ к области памяти за пределами границ приложения или вызвать аварийное завершение приложения

SUSE-SU-2015:0424-1
Security update for php5
ELSA-2015-2155
ELSA-2015-2155: file security and bug fix update (MODERATE)
ELSA-2015-1053
ELSA-2015-1053: php55 security and bug fix update (MODERATE)
ELSA-2015-1066
ELSA-2015-1066: php54 security and bug fix update (IMPORTANT)
ELSA-2015-1135
ELSA-2015-1135: php security and bug fix update (IMPORTANT)

SUSE-SU-2015:1265-1
Security update for php53

SUSE-SU-2015:1018-1
Security update for php53

SUSE-SU-2015:0436-1
Security update for php53

SUSE-SU-2015:0370-1
Security update for php53

SUSE-SU-2016:1638-1
Security update for php53
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2014-9652 The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file. | CVSS2: 5 | 6% Низкий | около 10 лет назад |
![]() | CVE-2014-9652 The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file. | CVSS2: 4.3 | 6% Низкий | больше 10 лет назад |
![]() | CVE-2014-9652 The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file. | CVSS2: 5 | 6% Низкий | около 10 лет назад |
CVE-2014-9652 The mconvert function in softmagic.c in file before 5.21, as used in t ... | CVSS2: 5 | 6% Низкий | около 10 лет назад | |
GHSA-4mj2-cv5h-vvmg The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file. | 6% Низкий | около 3 лет назад | ||
![]() | BDU:2015-09882 Уязвимость интерпретатора PHP, позволяющая удалённому злоумышленнику получить доступ к области памяти за пределами границ приложения или вызвать аварийное завершение приложения | CVSS2: 5 | 6% Низкий | больше 11 лет назад |
![]() | SUSE-SU-2015:0424-1 Security update for php5 | больше 10 лет назад | ||
ELSA-2015-2155 ELSA-2015-2155: file security and bug fix update (MODERATE) | больше 9 лет назад | |||
ELSA-2015-1053 ELSA-2015-1053: php55 security and bug fix update (MODERATE) | больше 9 лет назад | |||
ELSA-2015-1066 ELSA-2015-1066: php54 security and bug fix update (IMPORTANT) | больше 9 лет назад | |||
ELSA-2015-1135 ELSA-2015-1135: php security and bug fix update (IMPORTANT) | почти 10 лет назад | |||
![]() | SUSE-SU-2015:1265-1 Security update for php53 | больше 10 лет назад | ||
![]() | SUSE-SU-2015:1018-1 Security update for php53 | больше 10 лет назад | ||
![]() | SUSE-SU-2015:0436-1 Security update for php53 | больше 10 лет назад | ||
![]() | SUSE-SU-2015:0370-1 Security update for php53 | больше 10 лет назад | ||
![]() | SUSE-SU-2016:1638-1 Security update for php53 | почти 9 лет назад |
Уязвимостей на страницу