|
|
Subscribe / Log in / New account

php: multiple vulnerabilities

Package(s):php CVE #(s):CVE-2014-9425 CVE-2014-9427 CVE-2015-0231 CVE-2015-0232
Created:January 28, 2015 Updated:February 6, 2015
Description: From the Mageia advisory:

Double free vulnerability in the zend_ts_hash_graceful_destroy function in zend_ts_hash.c in the Zend Engine in PHP before 5.5.21 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors (CVE-2014-9425).

sapi/cgi/cgi_main.c in the CGI component in PHP before 5.5.21, when mmap is used to read a .php file, does not properly consider the mapping's length during processing of an invalid file that begins with a # character and lacks a newline character, which causes an out-of-bounds read and might allow remote attackers to obtain sensitive information from php-cgi process memory by leveraging the ability to upload a .php file or trigger unexpected code execution if a valid PHP script is present in memory locations adjacent to the mapping (CVE-2014-9427).

Use after free vulnerability in unserialize() in PHP before 5.5.21 (CVE-2015-0231).

Free called on an uninitialized pointer in php-exif in PHP before 5.5.21 (CVE-2015-0232).

Alerts:
SUSE SUSE-SU-2016:1638-1 php53 2016-06-21
Gentoo 201606-10 php 2016-06-19
Scientific Linux SLSA-2015:1218-1 php 2015-07-09
Oracle ELSA-2015-1218 php 2015-07-09
CentOS CESA-2015:1218 php 2015-07-09
Red Hat RHSA-2015:1218-01 php 2015-07-09
Scientific Linux SLSA-2015:1135-1 php 2015-06-24
Oracle ELSA-2015-1135 php 2015-06-23
CentOS CESA-2015:1135 php 2015-06-24
Red Hat RHSA-2015:1135-01 php 2015-06-23
Red Hat RHSA-2015:1053-01 php55 2015-06-04
Debian-LTS DLA-212-1 php5 2015-04-29
Slackware SSA:2015-111-10 php 2015-04-21
Red Hat RHSA-2015:1066-01 php54 2015-06-04
Fedora FEDORA-2015-4236 php 2015-03-30
Mandriva MDVSA-2015:080 php 2015-03-28
Mandriva MDVSA-2015:079 php 2015-03-28
Fedora FEDORA-2015-4255 php 2015-03-26
Debian DSA-3195-1 php5 2015-03-18
SUSE SUSE-SU-2015:0365-1 php5 2015-02-24
openSUSE openSUSE-SU-2015:0325-1 php5 2015-02-19
Ubuntu USN-2501-1 php5 2015-02-17
Gentoo 201503-03 php 2015-03-08
Mandriva MDVSA-2015:032 php 2015-02-05
Fedora FEDORA-2015-1101 php 2015-02-06
Fedora FEDORA-2015-1058 php 2015-02-06
Mageia MGASA-2015-0040 php 2015-01-27

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds