Логотип exploitDog
bind:"CVE-2014-3668" OR bind:"CVE-2014-3710" OR bind:"CVE-2014-3670" OR bind:"CVE-2014-3669"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-3668" OR bind:"CVE-2014-3710" OR bind:"CVE-2014-3670" OR bind:"CVE-2014-3669"

Количество 33

Количество 33

oracle-oval логотип

ELSA-2014-1768

около 11 лет назад

ELSA-2014-1768: php53 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2014-1767

около 11 лет назад

ELSA-2014-1767: php security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2014-3668

около 11 лет назад

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2014-3668

около 11 лет назад

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2014-3668

около 11 лет назад

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2014-3668

около 11 лет назад

Buffer overflow in the date_from_ISO8601 function in the mkgmtime impl ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-xv3f-rvh8-r59c

больше 3 лет назад

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

EPSS: Низкий
fstec логотип

BDU:2022-02643

около 11 лет назад

Уязвимость функции mkgmtime (libxmlrpc/xmlrpc.c) интерпретатора языка программирования PHP, позволяющая нарушителю

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1265-1

около 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1018-1

около 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0436-1

около 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0370-1

около 11 лет назад

Security update for php53

EPSS: Низкий
ubuntu логотип

CVE-2014-3710

почти 11 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2014-3710

около 11 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2014-3710

почти 11 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2014-3710

почти 11 лет назад

The donote function in readelf.c in file through 5.20, as used in the ...

CVSS2: 5
EPSS: Низкий
oracle-oval логотип

ELSA-2014-1824

почти 11 лет назад

ELSA-2014-1824: php security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:1638-1

больше 9 лет назад

Security update for php53

EPSS: Низкий
github логотип

GHSA-3rf4-9569-4jw7

больше 3 лет назад

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

EPSS: Низкий
ubuntu логотип

CVE-2014-3670

около 11 лет назад

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2014-1768

ELSA-2014-1768: php53 security update (IMPORTANT)

около 11 лет назад
oracle-oval логотип
ELSA-2014-1767

ELSA-2014-1767: php security update (IMPORTANT)

около 11 лет назад
ubuntu логотип
CVE-2014-3668

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

CVSS2: 5
1%
Низкий
около 11 лет назад
redhat логотип
CVE-2014-3668

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

CVSS2: 4.3
1%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-3668

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

CVSS2: 5
1%
Низкий
около 11 лет назад
debian логотип
CVE-2014-3668

Buffer overflow in the date_from_ISO8601 function in the mkgmtime impl ...

CVSS2: 5
1%
Низкий
около 11 лет назад
github логотип
GHSA-xv3f-rvh8-r59c

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-02643

Уязвимость функции mkgmtime (libxmlrpc/xmlrpc.c) интерпретатора языка программирования PHP, позволяющая нарушителю

CVSS3: 7.5
1%
Низкий
около 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1265-1

Security update for php53

около 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1018-1

Security update for php53

около 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0436-1

Security update for php53

около 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0370-1

Security update for php53

около 11 лет назад
ubuntu логотип
CVE-2014-3710

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

CVSS2: 5
8%
Низкий
почти 11 лет назад
redhat логотип
CVE-2014-3710

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

CVSS2: 4.3
8%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-3710

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

CVSS2: 5
8%
Низкий
почти 11 лет назад
debian логотип
CVE-2014-3710

The donote function in readelf.c in file through 5.20, as used in the ...

CVSS2: 5
8%
Низкий
почти 11 лет назад
oracle-oval логотип
ELSA-2014-1824

ELSA-2014-1824: php security update (IMPORTANT)

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2016:1638-1

Security update for php53

больше 9 лет назад
github логотип
GHSA-3rf4-9569-4jw7

The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.

8%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2014-3670

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
20%
Средний
около 11 лет назад

Уязвимостей на страницу