Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.108052
Kategorie:Web application abuses
Titel:PHP < 5.6.30, 7.0.x < 7.0.15, 7.1.x < 7.1.1 Multiple Vulnerabilities (Jan 2017) - Linux
Zusammenfassung:PHP is prone to multiple vulnerabilities.
Beschreibung:Summary:
PHP is prone to multiple vulnerabilities.

Vulnerability Insight:
The following flaws exist:

- Fixed bug #73825 (Heap out of bounds read on unserialize in finish_nested_data()).
(CVE-2016-10161)

- Fixed bug #73737 (FPE when parsing a tag format). (CVE-2016-10158)

- Fixed bug #73869 (Signed Integer Overflow gd_io.c). (CVE-2016-10168)

- Fixed bug #73868 (DOS vulnerability in gdImageCreateFromGd2Ctx()). (CVE-2016-10167)

- Fixed bug #73773 (Seg fault when loading hostile phar). (CVE-2017-11147)

- Fixed bug #73768 (Memory corruption when loading hostile phar). (CVE-2016-10160)

- Fixed bug #73764 (Crash while loading hostile phar archive). (CVE-2016-10159)

Affected Software/OS:
PHP versions before 5.6.30, 7.0.x before 7.0.15 and 7.1.x
before 7.1.1.

Solution:
Update to version 5.6.30, 7.0.15, 7.1.1 or later.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-10161
BugTraq ID: 95768
http://www.securityfocus.com/bid/95768
Debian Security Information: DSA-3783 (Google Search)
http://www.debian.org/security/2017/dsa-3783
https://security.gentoo.org/glsa/201702-29
RedHat Security Advisories: RHSA-2018:1296
https://access.redhat.com/errata/RHSA-2018:1296
http://www.securitytracker.com/id/1037659
Common Vulnerability Exposure (CVE) ID: CVE-2016-10158
BugTraq ID: 95764
http://www.securityfocus.com/bid/95764
Common Vulnerability Exposure (CVE) ID: CVE-2016-10168
BugTraq ID: 95869
http://www.securityfocus.com/bid/95869
Debian Security Information: DSA-3777 (Google Search)
http://www.debian.org/security/2017/dsa-3777
http://www.openwall.com/lists/oss-security/2017/01/26/1
http://www.openwall.com/lists/oss-security/2017/01/28/6
RedHat Security Advisories: RHSA-2017:3221
https://access.redhat.com/errata/RHSA-2017:3221
Common Vulnerability Exposure (CVE) ID: CVE-2016-10167
Common Vulnerability Exposure (CVE) ID: CVE-2017-11147
BugTraq ID: 99607
http://www.securityfocus.com/bid/99607
Common Vulnerability Exposure (CVE) ID: CVE-2016-10160
BugTraq ID: 95783
http://www.securityfocus.com/bid/95783
Common Vulnerability Exposure (CVE) ID: CVE-2016-10159
BugTraq ID: 95774
http://www.securityfocus.com/bid/95774
CopyrightCopyright (C) 2017 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.