Facebook

Hhvm

40 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Veröffentlicht 31.12.2018 22:29:00
  • Zuletzt bearbeitet 06.05.2025 17:15:50

folly::secureRandom will re-use a buffer between parent and child processes when fork() is called. That will result in multiple forked children producing repeat (or similar) results. This affects HHVM 3.26 prior to 3.26.3 and the folly library betwee...

  • EPSS 0.7%
  • Veröffentlicht 31.12.2018 19:29:00
  • Zuletzt bearbeitet 06.05.2025 19:15:53

A Malformed h2 frame can cause 'std::out_of_range' exception when parsing priority meta data. This behavior can lead to denial-of-service. This affects all supported versions of HHVM (3.25.2, 3.24.6, and 3.21.10 and below) when using the proxygen ser...

  • EPSS 0.63%
  • Veröffentlicht 31.12.2018 19:29:00
  • Zuletzt bearbeitet 06.05.2025 17:15:50

Multipart-file uploads call variables to be improperly registered in the global scope. In cases where variables are not declared explicitly before being used this can lead to unexpected behavior. This affects all supported versions of HHVM prior to t...

  • EPSS 0.44%
  • Veröffentlicht 03.12.2018 14:29:00
  • Zuletzt bearbeitet 06.05.2025 19:15:53

A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 settings which can cause the server to spend disproportionate resources. This affects all supported versions of HHVM (3.24.3 and 3.21.7 and below) when using the proxygen s...

  • EPSS 0.57%
  • Veröffentlicht 17.02.2017 17:59:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Infinite recursion in wddx in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.

  • EPSS 0.57%
  • Veröffentlicht 17.02.2017 17:59:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, related to recursion.

  • EPSS 0.57%
  • Veröffentlicht 17.02.2017 17:59:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Self recursion in compact in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.

  • EPSS 0.57%
  • Veröffentlicht 17.02.2017 17:59:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Integer overflow in StringUtil::implode in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.

  • EPSS 0.51%
  • Veröffentlicht 17.02.2017 17:59:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Integer overflow in bcmath in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, which triggers a buffer overflow.

  • EPSS 0.97%
  • Veröffentlicht 17.02.2017 17:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Out-of-bounds write in the (1) mb_detect_encoding, (2) mb_send_mail, and (3) mb_detect_order functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors.