Логотип exploitDog
bind:CVE-2020-1898
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-1898

Количество 4

Количество 4

ubuntu логотип

CVE-2020-1898

почти 5 лет назад

The fb_unserialize function did not impose a depth limit for nested deserialization. That meant a maliciously constructed string could cause deserialization to recurse, leading to stack exhaustion. This issue affected HHVM prior to v4.32.3, between versions 4.33.0 and 4.56.0, 4.57.0, 4.58.0, 4.58.1, 4.59.0, 4.60.0, 4.61.0, 4.62.0.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-1898

почти 5 лет назад

The fb_unserialize function did not impose a depth limit for nested deserialization. That meant a maliciously constructed string could cause deserialization to recurse, leading to stack exhaustion. This issue affected HHVM prior to v4.32.3, between versions 4.33.0 and 4.56.0, 4.57.0, 4.58.0, 4.58.1, 4.59.0, 4.60.0, 4.61.0, 4.62.0.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-1898

почти 5 лет назад

The fb_unserialize function did not impose a depth limit for nested de ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-86q4-p3xc-6m2h

больше 3 лет назад

The fb_unserialize function did not impose a depth limit for nested deserialization. That meant a maliciously constructed string could cause deserialization to recurse, leading to stack exhaustion. This issue affected HHVM prior to v4.32.3, between versions 4.33.0 and 4.56.0, 4.57.0, 4.58.0, 4.58.1, 4.59.0, 4.60.0, 4.61.0, 4.62.0.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-1898

The fb_unserialize function did not impose a depth limit for nested deserialization. That meant a maliciously constructed string could cause deserialization to recurse, leading to stack exhaustion. This issue affected HHVM prior to v4.32.3, between versions 4.33.0 and 4.56.0, 4.57.0, 4.58.0, 4.58.1, 4.59.0, 4.60.0, 4.61.0, 4.62.0.

CVSS3: 7.5
1%
Низкий
почти 5 лет назад
nvd логотип
CVE-2020-1898

The fb_unserialize function did not impose a depth limit for nested deserialization. That meant a maliciously constructed string could cause deserialization to recurse, leading to stack exhaustion. This issue affected HHVM prior to v4.32.3, between versions 4.33.0 and 4.56.0, 4.57.0, 4.58.0, 4.58.1, 4.59.0, 4.60.0, 4.61.0, 4.62.0.

CVSS3: 7.5
1%
Низкий
почти 5 лет назад
debian логотип
CVE-2020-1898

The fb_unserialize function did not impose a depth limit for nested de ...

CVSS3: 7.5
1%
Низкий
почти 5 лет назад
github логотип
GHSA-86q4-p3xc-6m2h

The fb_unserialize function did not impose a depth limit for nested deserialization. That meant a maliciously constructed string could cause deserialization to recurse, leading to stack exhaustion. This issue affected HHVM prior to v4.32.3, between versions 4.33.0 and 4.56.0, 4.57.0, 4.58.0, 4.58.1, 4.59.0, 4.60.0, 4.61.0, 4.62.0.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу