Логотип exploitDog
bind:CVE-2015-5589
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-5589

Количество 9

Количество 9

ubuntu логотип

CVE-2015-5589

около 9 лет назад

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS3: 9.8
EPSS: Средний
redhat логотип

CVE-2015-5589

около 10 лет назад

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2015-5589

около 9 лет назад

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS3: 9.8
EPSS: Средний
debian логотип

CVE-2015-5589

около 9 лет назад

The phar_convert_to_other function in ext/phar/phar_object.c in PHP be ...

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-w5qc-4r89-xv6r

около 3 лет назад

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS3: 9.8
EPSS: Средний
fstec логотип

BDU:2016-01360

около 9 лет назад

Уязвимость интерпретатора PHP, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

CVSS2: 10
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2015:1466-1

около 10 лет назад

Security update for php53

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1425-1

около 10 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:1638-1

около 9 лет назад

Security update for php53

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-5589

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS3: 9.8
12%
Средний
около 9 лет назад
redhat логотип
CVE-2015-5589

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS2: 4.3
12%
Средний
около 10 лет назад
nvd логотип
CVE-2015-5589

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS3: 9.8
12%
Средний
около 9 лет назад
debian логотип
CVE-2015-5589

The phar_convert_to_other function in ext/phar/phar_object.c in PHP be ...

CVSS3: 9.8
12%
Средний
около 9 лет назад
github логотип
GHSA-w5qc-4r89-xv6r

The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer before a close operation, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted TAR archive that is mishandled in a Phar::convertToData call.

CVSS3: 9.8
12%
Средний
около 3 лет назад
fstec логотип
BDU:2016-01360

Уязвимость интерпретатора PHP, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

CVSS2: 10
12%
Средний
около 9 лет назад
suse-cvrf логотип
SUSE-SU-2015:1466-1

Security update for php53

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1425-1

Security update for php5

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2016:1638-1

Security update for php53

около 9 лет назад

Уязвимостей на страницу