Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-5459
Description:The PEAR_REST class in REST.php in PEAR in PHP through 5.6.0 allows local users to write to arbitrary files via a symlink attack on a (1) rest.cachefile or (2) rest.cacheid file in /tmp/pear/cache/, related to the retrieveCacheFirst and useLocalCache functions.
Test IDs: 1.3.6.1.4.1.25623.1.0.117252   1.3.6.1.4.1.25623.1.1.4.2014.1141.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-5459
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=759282
http://www.openwall.com/lists/oss-security/2014/08/27/3
SuSE Security Announcement: openSUSE-SU-2014:1133 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-09/msg00024.html
SuSE Security Announcement: openSUSE-SU-2014:1245 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-09/msg00055.html




© 1998-2025 E-Soft Inc. All rights reserved.