Логотип exploitDog
bind:CVE-2014-3670
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-3670

Количество 14

Количество 14

ubuntu логотип

CVE-2014-3670

почти 11 лет назад

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2014-3670

почти 11 лет назад

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2014-3670

почти 11 лет назад

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2014-3670

почти 11 лет назад

The exif_ifd_make_value function in exif.c in the EXIF extension in PH ...

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-r6jr-5phj-2qqh

около 3 лет назад

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

EPSS: Низкий
fstec логотип

BDU:2022-02650

почти 11 лет назад

Уязвимость расширения EXIF интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 7.3
EPSS: Низкий
oracle-oval логотип

ELSA-2014-1824

почти 11 лет назад

ELSA-2014-1824: php security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2014-1768

почти 11 лет назад

ELSA-2014-1768: php53 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2014-1767

почти 11 лет назад

ELSA-2014-1767: php security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1265-1

почти 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1018-1

почти 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0436-1

почти 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0370-1

почти 11 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:1638-1

около 9 лет назад

Security update for php53

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-3670

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
9%
Низкий
почти 11 лет назад
redhat логотип
CVE-2014-3670

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
9%
Низкий
почти 11 лет назад
nvd логотип
CVE-2014-3670

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

CVSS2: 6.8
9%
Низкий
почти 11 лет назад
debian логотип
CVE-2014-3670

The exif_ifd_make_value function in exif.c in the EXIF extension in PH ...

CVSS2: 6.8
9%
Низкий
почти 11 лет назад
github логотип
GHSA-r6jr-5phj-2qqh

The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function.

9%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-02650

Уязвимость расширения EXIF интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 7.3
9%
Низкий
почти 11 лет назад
oracle-oval логотип
ELSA-2014-1824

ELSA-2014-1824: php security update (IMPORTANT)

почти 11 лет назад
oracle-oval логотип
ELSA-2014-1768

ELSA-2014-1768: php53 security update (IMPORTANT)

почти 11 лет назад
oracle-oval логотип
ELSA-2014-1767

ELSA-2014-1767: php security update (IMPORTANT)

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1265-1

Security update for php53

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1018-1

Security update for php53

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0436-1

Security update for php53

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0370-1

Security update for php53

почти 11 лет назад
suse-cvrf логотип
SUSE-SU-2016:1638-1

Security update for php53

около 9 лет назад

Уязвимостей на страницу