Логотип exploitDog
bind:"GHSA-6r6h-mwpx-cfrc" OR bind:"CVE-2015-4604"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-6r6h-mwpx-cfrc" OR bind:"CVE-2015-4604"

Количество 9

Количество 9

github логотип

GHSA-6r6h-mwpx-cfrc

почти 4 года назад

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2015-4604

почти 10 лет назад

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2015-4604

почти 11 лет назад

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2015-4604

почти 10 лет назад

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2015-4604

почти 10 лет назад

The mget function in softmagic.c in file 5.x, as used in the Fileinfo ...

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2016-01365

почти 10 лет назад

Уязвимость интерпретатора PHP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS2: 5
EPSS: Низкий
oracle-oval логотип

ELSA-2015-1186

около 10 лет назад

ELSA-2015-1186: php55-php security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1066

около 10 лет назад

ELSA-2015-1066: php54 security and bug fix update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1135

почти 11 лет назад

ELSA-2015-1135: php security and bug fix update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-6r6h-mwpx-cfrc

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS3: 7.5
9%
Низкий
почти 4 года назад
ubuntu логотип
CVE-2015-4604

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS3: 7.5
9%
Низкий
почти 10 лет назад
redhat логотип
CVE-2015-4604

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS2: 5
9%
Низкий
почти 11 лет назад
nvd логотип
CVE-2015-4604

The mget function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly maintain a certain pointer relationship, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.

CVSS3: 7.5
9%
Низкий
почти 10 лет назад
debian логотип
CVE-2015-4604

The mget function in softmagic.c in file 5.x, as used in the Fileinfo ...

CVSS3: 7.5
9%
Низкий
почти 10 лет назад
fstec логотип
BDU:2016-01365

Уязвимость интерпретатора PHP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS2: 5
9%
Низкий
почти 10 лет назад
oracle-oval логотип
ELSA-2015-1186

ELSA-2015-1186: php55-php security update (IMPORTANT)

около 10 лет назад
oracle-oval логотип
ELSA-2015-1066

ELSA-2015-1066: php54 security and bug fix update (IMPORTANT)

около 10 лет назад
oracle-oval логотип
ELSA-2015-1135

ELSA-2015-1135: php security and bug fix update (IMPORTANT)

почти 11 лет назад

Уязвимостей на страницу