Логотип exploitDog
bind:"BDU:2017-01841" OR bind:"CVE-2017-9226"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2017-01841" OR bind:"CVE-2017-9226"

Количество 11

Количество 11

fstec логотип

BDU:2017-01841

около 8 лет назад

Уязвимость библиотеки Oniguruma, связанная с некорректной обработкой чисел и позволяющая нарушителю вызвать повреждение памяти

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2017-9226

около 8 лет назад

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2017-9226

около 8 лет назад

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2017-9226

около 8 лет назад

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-9226

около 8 лет назад

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod i ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-q5wh-hr49-c2mq

около 3 лет назад

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:1757-1

почти 8 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:1662-1

около 8 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:1800-1

почти 8 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:1717-1

почти 8 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:1585-1

около 8 лет назад

Security update for php53

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2017-01841

Уязвимость библиотеки Oniguruma, связанная с некорректной обработкой чисел и позволяющая нарушителю вызвать повреждение памяти

CVSS2: 7.5
1%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2017-9226

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 9.8
1%
Низкий
около 8 лет назад
redhat логотип
CVE-2017-9226

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 4.8
1%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-9226

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 9.8
1%
Низкий
около 8 лет назад
debian логотип
CVE-2017-9226

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod i ...

CVSS3: 9.8
1%
Низкий
около 8 лет назад
github логотип
GHSA-q5wh-hr49-c2mq

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A heap out-of-bounds write or read occurs in next_state_val() during regular expression compilation. Octal numbers larger than 0xff are not handled correctly in fetch_token() and fetch_token_in_cc(). A malformed regular expression containing an octal number in the form of '\700' would produce an invalid code point value larger than 0xff in next_state_val(), resulting in an out-of-bounds write memory corruption.

CVSS3: 9.8
1%
Низкий
около 3 лет назад
suse-cvrf логотип
openSUSE-SU-2017:1757-1

Security update for php5

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:1662-1

Security update for php5

около 8 лет назад
suse-cvrf логотип
openSUSE-SU-2017:1800-1

Security update for php7

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:1717-1

Security update for php7

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:1585-1

Security update for php53

около 8 лет назад

Уязвимостей на страницу