7.5

CVE-2013-6420

Exploit
The asn1_time_to_time_t function in ext/openssl/openssl.c in PHP before 5.3.28, 5.4.x before 5.4.23, and 5.5.x before 5.5.7 does not properly parse (1) notBefore and (2) notAfter timestamps in X.509 certificates, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted certificate that is not properly handled by the openssl_x509_parse function.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Php ≫ Php Version 5.4.0
Php ≫ Php Version 5.4.1
Php ≫ Php Version 5.4.2
Php ≫ Php Version 5.4.3
Php ≫ Php Version 5.4.4
Php ≫ Php Version 5.4.5
Php ≫ Php Version 5.4.6
Php ≫ Php Version 5.4.7
Php ≫ Php Version 5.4.8
Php ≫ Php Version 5.4.9
Php ≫ Php Version 5.4.10
Php ≫ Php Version 5.4.11
Php ≫ Php Version 5.4.12
Php ≫ Php Version 5.4.12 Update rc1
Php ≫ Php Version 5.4.12 Update rc2
Php ≫ Php Version 5.4.13
Php ≫ Php Version 5.4.13 Update rc1
Php ≫ Php Version 5.4.14
Php ≫ Php Version 5.4.14 Update rc1
Php ≫ Php Version 5.4.15
Php ≫ Php Version 5.4.15 Update rc1
Php ≫ Php Version 5.4.16
Php ≫ Php Version 5.4.16 Update rc1
Php ≫ Php Version 5.4.17
Php ≫ Php Version 5.4.18
Php ≫ Php Version 5.4.19
Php ≫ Php Version 5.4.20
Php ≫ Php Version 5.4.21
Php ≫ Php Version 5.4.22
Opensuse ≫ Opensuse Version 11.4
Opensuse ≫ Opensuse Version 12.2
Opensuse ≫ Opensuse Version 12.3
Opensuse ≫ Opensuse Version 13.1
Apple ≫ macOS X Version <= 10.9.1
Php ≫ Php Version <= 5.3.27
Php ≫ Php Version 5.3.0
Php ≫ Php Version 5.3.1
Php ≫ Php Version 5.3.2
Php ≫ Php Version 5.3.3
Php ≫ Php Version 5.3.4
Php ≫ Php Version 5.3.5
Php ≫ Php Version 5.3.6
Php ≫ Php Version 5.3.7
Php ≫ Php Version 5.3.8
Php ≫ Php Version 5.3.9
Php ≫ Php Version 5.3.10
Php ≫ Php Version 5.3.11
Php ≫ Php Version 5.3.12
Php ≫ Php Version 5.3.13
Php ≫ Php Version 5.3.14
Php ≫ Php Version 5.3.15
Php ≫ Php Version 5.3.16
Php ≫ Php Version 5.3.17
Php ≫ Php Version 5.3.18
Php ≫ Php Version 5.3.19
Php ≫ Php Version 5.3.20
Php ≫ Php Version 5.3.21
Php ≫ Php Version 5.3.22
Php ≫ Php Version 5.3.23
Php ≫ Php Version 5.3.24
Php ≫ Php Version 5.3.25
Php ≫ Php Version 5.3.26
Php ≫ Php Version 5.5.0
Php ≫ Php Version 5.5.0 Update alpha1
Php ≫ Php Version 5.5.0 Update alpha2
Php ≫ Php Version 5.5.0 Update alpha3
Php ≫ Php Version 5.5.0 Update alpha4
Php ≫ Php Version 5.5.0 Update alpha5
Php ≫ Php Version 5.5.0 Update alpha6
Php ≫ Php Version 5.5.0 Update beta1
Php ≫ Php Version 5.5.0 Update beta2
Php ≫ Php Version 5.5.0 Update beta3
Php ≫ Php Version 5.5.0 Update beta4
Php ≫ Php Version 5.5.0 Update rc1
Php ≫ Php Version 5.5.0 Update rc2
Php ≫ Php Version 5.5.1
Php ≫ Php Version 5.5.2
Php ≫ Php Version 5.5.3
Php ≫ Php Version 5.5.4
Php ≫ Php Version 5.5.5
Php ≫ Php Version 5.5.6
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 35.64% 0.983
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://www.php.net/ChangeLog-5.php
http://support.apple.com/kb/HT6150
http://forums.interworx.com/threads/8000-InterWorx-Version-5-0-14-Released-on-Beta-Channel%21
http://lists.opensuse.org/opensuse-updates/2013-12/msg00125.html
http://lists.opensuse.org/opensuse-updates/2013-12/msg00126.html
http://secunia.com/advisories/59652
https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04463322
http://www.debian.org/security/2013/dsa-2816
http://www.ubuntu.com/usn/USN-2055-1
http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=c1224573c773b6845e83505f717fbf820fc18415
http://rhn.redhat.com/errata/RHSA-2013-1813.html
http://rhn.redhat.com/errata/RHSA-2013-1815.html
http://rhn.redhat.com/errata/RHSA-2013-1824.html
http://rhn.redhat.com/errata/RHSA-2013-1825.html
http://rhn.redhat.com/errata/RHSA-2013-1826.html
http://www.securityfocus.com/bid/64225
http://www.securitytracker.com/id/1029472
https://bugzilla.redhat.com/show_bug.cgi?id=1036830
Patch
https://www.sektioneins.de/advisories/advisory-012013-php-openssl_x509_parse-memory-corruption-vulnerability.html
Exploit