Логотип exploitDog
bind:"BDU:2015-09882" OR bind:"CVE-2014-9652"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2015-09882" OR bind:"CVE-2014-9652"

Количество 16

Количество 16

fstec логотип

BDU:2015-09882

больше 11 лет назад

Уязвимость интерпретатора PHP, позволяющая удалённому злоумышленнику получить доступ к области памяти за пределами границ приложения или вызвать аварийное завершение приложения

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2014-9652

около 10 лет назад

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2014-9652

больше 10 лет назад

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2014-9652

около 10 лет назад

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2014-9652

около 10 лет назад

The mconvert function in softmagic.c in file before 5.21, as used in t ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-4mj2-cv5h-vvmg

около 3 лет назад

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0424-1

больше 10 лет назад

Security update for php5

EPSS: Низкий
oracle-oval логотип

ELSA-2015-2155

больше 9 лет назад

ELSA-2015-2155: file security and bug fix update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1053

больше 9 лет назад

ELSA-2015-1053: php55 security and bug fix update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1066

больше 9 лет назад

ELSA-2015-1066: php54 security and bug fix update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1135

почти 10 лет назад

ELSA-2015-1135: php security and bug fix update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1265-1

больше 10 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1018-1

больше 10 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0436-1

больше 10 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0370-1

больше 10 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:1638-1

почти 9 лет назад

Security update for php53

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2015-09882

Уязвимость интерпретатора PHP, позволяющая удалённому злоумышленнику получить доступ к области памяти за пределами границ приложения или вызвать аварийное завершение приложения

CVSS2: 5
6%
Низкий
больше 11 лет назад
ubuntu логотип
CVE-2014-9652

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVSS2: 5
6%
Низкий
около 10 лет назад
redhat логотип
CVE-2014-9652

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVSS2: 4.3
6%
Низкий
больше 10 лет назад
nvd логотип
CVE-2014-9652

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

CVSS2: 5
6%
Низкий
около 10 лет назад
debian логотип
CVE-2014-9652

The mconvert function in softmagic.c in file before 5.21, as used in t ...

CVSS2: 5
6%
Низкий
около 10 лет назад
github логотип
GHSA-4mj2-cv5h-vvmg

The mconvert function in softmagic.c in file before 5.21, as used in the Fileinfo component in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5, does not properly handle a certain string-length field during a copy of a truncated version of a Pascal string, which might allow remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted file.

6%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2015:0424-1

Security update for php5

больше 10 лет назад
oracle-oval логотип
ELSA-2015-2155

ELSA-2015-2155: file security and bug fix update (MODERATE)

больше 9 лет назад
oracle-oval логотип
ELSA-2015-1053

ELSA-2015-1053: php55 security and bug fix update (MODERATE)

больше 9 лет назад
oracle-oval логотип
ELSA-2015-1066

ELSA-2015-1066: php54 security and bug fix update (IMPORTANT)

больше 9 лет назад
oracle-oval логотип
ELSA-2015-1135

ELSA-2015-1135: php security and bug fix update (IMPORTANT)

почти 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1265-1

Security update for php53

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1018-1

Security update for php53

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:0436-1

Security update for php53

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:0370-1

Security update for php53

больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2016:1638-1

Security update for php53

почти 9 лет назад

Уязвимостей на страницу