Логотип exploitDog
bind:"BDU:2020-03181" OR bind:"CVE-2019-9675"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2020-03181" OR bind:"CVE-2019-9675"

Количество 15

Количество 15

fstec логотип

BDU:2020-03181

больше 6 лет назад

Уязвимость функции phar_tar_writeheaders_int (ext/phar/tar.c) интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2019-9675

больше 6 лет назад

** DISPUTED ** An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible."

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2019-9675

больше 6 лет назад

An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2019-9675

больше 6 лет назад

An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2019-9675

больше 6 лет назад

An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3. ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-pf47-4qf3-xq2x

около 3 лет назад

** DISPUTED ** An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible."

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:0988-1

около 6 лет назад

Security update for php72

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1503-1

около 6 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1325-1

около 6 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1293-1

около 6 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:14013-1

около 6 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1573-1

около 6 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1572-1

около 6 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1461-1

около 6 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4067-1

больше 2 лет назад

Security update for php7

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2020-03181

Уязвимость функции phar_tar_writeheaders_int (ext/phar/tar.c) интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-9675

** DISPUTED ** An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible."

CVSS3: 8.1
0%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-9675

An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible.

CVSS3: 3.7
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-9675

An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible.

CVSS3: 8.1
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-9675

An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3. ...

CVSS3: 8.1
0%
Низкий
больше 6 лет назад
github логотип
GHSA-pf47-4qf3-xq2x

** DISPUTED ** An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible."

CVSS3: 8.1
0%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2019:0988-1

Security update for php72

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1503-1

Security update for php5

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1325-1

Security update for php5

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1293-1

Security update for php7

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:14013-1

Security update for php53

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1573-1

Security update for php7

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1572-1

Security update for php7

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1461-1

Security update for php7

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2022:4067-1

Security update for php7

больше 2 лет назад

Уязвимостей на страницу