Php

Php

711 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 9.91%
  • Veröffentlicht 20.03.2011 02:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The _zip_name_locate function in zip_name_locate.c in the Zip extension in PHP before 5.3.6 does not properly handle a ZIPARCHIVE::FL_UNCHANGED argument, which might allow context-dependent attackers to cause a denial of service (NULL pointer derefer...

Exploit
  • EPSS 10.64%
  • Veröffentlicht 20.03.2011 02:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

exif.c in the Exif extension in PHP before 5.3.6 on 64-bit platforms performs an incorrect cast, which allows remote attackers to cause a denial of service (application crash) via an image with a crafted Image File Directory (IFD) that triggers a buf...

  • EPSS 3.41%
  • Veröffentlicht 18.03.2011 15:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in the substr_replace function in PHP 5.3.6 and earlier allows context-dependent attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact by using the same variable for multiple...

  • EPSS 1.97%
  • Veröffentlicht 16.03.2011 22:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple format string vulnerabilities in phar_object.c in the phar extension in PHP 5.3.5 and earlier allow context-dependent attackers to obtain sensitive information from process memory, cause a denial of service (memory corruption), or possibly e...

Exploit
  • EPSS 11.98%
  • Veröffentlicht 15.03.2011 17:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in ext/shmop/shmop.c in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (crash) and possibly read sensitive memory via a large third argument to the shmop_read function.

Exploit
  • EPSS 15.15%
  • Veröffentlicht 19.02.2011 01:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependent attackers to cause a denial of service (crash) via an invalid size argument, which triggers a NULL pointer dereference.

  • EPSS 0.53%
  • Veröffentlicht 02.02.2011 22:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in the PCNTL extension in PHP before 5.3.4, when a user-defined signal handler exists, might allow context-dependent attackers to cause a denial of service (memory corruption) via a large number of concurrent signals.

  • EPSS 0.03%
  • Veröffentlicht 02.02.2011 22:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The SplFileInfo::getType function in the Standard PHP Library (SPL) extension in PHP before 5.3.4 on Windows does not properly detect symbolic links, which might make it easier for local users to conduct symlink attacks by leveraging cross-platform d...

Exploit
  • EPSS 0.41%
  • Veröffentlicht 02.02.2011 22:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the mt_rand function in PHP before 5.3.4 might make it easier for context-dependent attackers to predict the return values by leveraging a script's use of a large max parameter, as demonstrated by a value that exceeds mt_getrandma...

  • EPSS 0.54%
  • Veröffentlicht 02.02.2011 22:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The extract function in PHP before 5.2.15 does not prevent use of the EXTR_OVERWRITE parameter to overwrite (1) the GLOBALS superglobal array and (2) the this variable, which allows context-dependent attackers to bypass intended access restrictions b...