Логотип exploitDog
product: "php"
Консоль
Логотип exploitDog

exploitDog

product: "php"

Количество 3 843

Количество 3 843

nvd логотип

CVE-2014-3487

около 11 лет назад

The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate a stream offset, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2014-3487

около 11 лет назад

The cdf_read_property_info function in file before 5.19, as used in th ...

CVSS2: 4.3
EPSS: Средний
ubuntu логотип

CVE-2014-3480

около 11 лет назад

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2014-3480

около 11 лет назад

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2014-3480

около 11 лет назад

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2014-3480

около 11 лет назад

The cdf_count_chain function in cdf.c in file before 5.19, as used in ...

CVSS2: 4.3
EPSS: Средний
ubuntu логотип

CVE-2014-3479

около 11 лет назад

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (application crash) via a crafted stream offset in a CDF file.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2014-3479

около 11 лет назад

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (application crash) via a crafted stream offset in a CDF file.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2014-3479

около 11 лет назад

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (application crash) via a crafted stream offset in a CDF file.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2014-3479

около 11 лет назад

The cdf_check_stream_offset function in cdf.c in file before 5.19, as ...

CVSS2: 4.3
EPSS: Средний
ubuntu логотип

CVE-2014-3478

около 11 лет назад

Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2014-3478

около 11 лет назад

Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2014-3478

около 11 лет назад

Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2014-3478

около 11 лет назад

Buffer overflow in the mconvert function in softmagic.c in file before ...

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2014-2270

больше 11 лет назад

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2014-2270

больше 11 лет назад

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2014-2270

больше 11 лет назад

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2014-2270

больше 11 лет назад

softmagic.c in file before 5.17 and libmagic allows context-dependent ...

CVSS2: 4.3
EPSS: Средний
ubuntu логотип

CVE-2014-1943

больше 11 лет назад

Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2014-1943

больше 11 лет назад

Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.

CVSS2: 4.3
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-3487

The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate a stream offset, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
15%
Средний
около 11 лет назад
debian логотип
CVE-2014-3487

The cdf_read_property_info function in file before 5.19, as used in th ...

CVSS2: 4.3
15%
Средний
около 11 лет назад
ubuntu логотип
CVE-2014-3480

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
12%
Средний
около 11 лет назад
redhat логотип
CVE-2014-3480

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
12%
Средний
около 11 лет назад
nvd логотип
CVE-2014-3480

The cdf_count_chain function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, does not properly validate sector-count data, which allows remote attackers to cause a denial of service (application crash) via a crafted CDF file.

CVSS2: 4.3
12%
Средний
около 11 лет назад
debian логотип
CVE-2014-3480

The cdf_count_chain function in cdf.c in file before 5.19, as used in ...

CVSS2: 4.3
12%
Средний
около 11 лет назад
ubuntu логотип
CVE-2014-3479

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (application crash) via a crafted stream offset in a CDF file.

CVSS2: 4.3
12%
Средний
около 11 лет назад
redhat логотип
CVE-2014-3479

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (application crash) via a crafted stream offset in a CDF file.

CVSS2: 4.3
12%
Средний
около 11 лет назад
nvd логотип
CVE-2014-3479

The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, relies on incorrect sector-size data, which allows remote attackers to cause a denial of service (application crash) via a crafted stream offset in a CDF file.

CVSS2: 4.3
12%
Средний
около 11 лет назад
debian логотип
CVE-2014-3479

The cdf_check_stream_offset function in cdf.c in file before 5.19, as ...

CVSS2: 4.3
12%
Средний
около 11 лет назад
ubuntu логотип
CVE-2014-3478

Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.

CVSS2: 5
34%
Средний
около 11 лет назад
redhat логотип
CVE-2014-3478

Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.

CVSS2: 4.3
34%
Средний
около 11 лет назад
nvd логотип
CVE-2014-3478

Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (application crash) via a crafted Pascal string in a FILE_PSTRING conversion.

CVSS2: 5
34%
Средний
около 11 лет назад
debian логотип
CVE-2014-3478

Buffer overflow in the mconvert function in softmagic.c in file before ...

CVSS2: 5
34%
Средний
около 11 лет назад
ubuntu логотип
CVE-2014-2270

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

CVSS2: 4.3
15%
Средний
больше 11 лет назад
redhat логотип
CVE-2014-2270

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

CVSS2: 4.3
15%
Средний
больше 11 лет назад
nvd логотип
CVE-2014-2270

softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.

CVSS2: 4.3
15%
Средний
больше 11 лет назад
debian логотип
CVE-2014-2270

softmagic.c in file before 5.17 and libmagic allows context-dependent ...

CVSS2: 4.3
15%
Средний
больше 11 лет назад
ubuntu логотип
CVE-2014-1943

Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.

CVSS2: 5
16%
Средний
больше 11 лет назад
redhat логотип
CVE-2014-1943

Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file.

CVSS2: 4.3
16%
Средний
больше 11 лет назад

Уязвимостей на страницу