Количество 74
Количество 74
ROS-20260901-80-0008
Уязвимость php 8.5
ROS-20260901-80-0007
Уязвимость php 8.4
ROS-20260901-80-0006
Уязвимость php 8.3
ROS-20260901-80-0005
Уязвимость php
ROS-20260901-73-0006
Уязвимость php 8.4
ROS-20260901-73-0005
Уязвимость php 8.3
ROS-20260901-73-0004
Уязвимость php
CVE-2026-7262
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service.
CVE-2026-7262
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service.
CVE-2026-7262
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service.
CVE-2026-7262
NULL pointer dereference in SOAP apache:Map decoder with missing <value>
CVE-2026-7262
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before ...
CVE-2026-7568
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process.
CVE-2026-7568
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process.
CVE-2026-7568
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process.
CVE-2026-7568
Signed integer overflow in metaphone()
CVE-2026-7568
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before ...
ROS-20260901-80-0012
Уязвимость php 8.5
ROS-20260901-80-0011
Уязвимость php 8.4
ROS-20260901-80-0010
Уязвимость php 8.3
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ROS-20260901-80-0008 Уязвимость php 8.5 | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
ROS-20260901-80-0007 Уязвимость php 8.4 | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
ROS-20260901-80-0006 Уязвимость php 8.3 | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
ROS-20260901-80-0005 Уязвимость php | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
ROS-20260901-73-0006 Уязвимость php 8.4 | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
ROS-20260901-73-0005 Уязвимость php 8.3 | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
ROS-20260901-73-0004 Уязвимость php | CVSS3: 7.5 | 0% Низкий | 14 дней назад | |
CVE-2026-7262 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-7262 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-7262 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-7262 NULL pointer dereference in SOAP apache:Map decoder with missing <value> | 1% Низкий | 3 месяца назад | ||
CVE-2026-7262 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before ... | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-7568 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-7568 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-7568 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process. | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
CVE-2026-7568 Signed integer overflow in metaphone() | 0% Низкий | 3 месяца назад | ||
CVE-2026-7568 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before ... | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
ROS-20260901-80-0012 Уязвимость php 8.5 | CVSS3: 5.3 | 1% Низкий | 14 дней назад | |
ROS-20260901-80-0011 Уязвимость php 8.4 | CVSS3: 5.3 | 1% Низкий | 14 дней назад | |
ROS-20260901-80-0010 Уязвимость php 8.3 | CVSS3: 5.3 | 1% Низкий | 14 дней назад |
Уязвимостей на страницу