The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Php | — | Apply OS X security update 2005-006 | Dec 16, 2011 | May 2, 2005 |
| Gentoo Linux | — | Upgrade dev-php/php.Upgrade dev-php/php-cgi.Upgrade dev-php/mod_php. | Oct 30, 2017 | May 2, 2005 |
| Php | — | Upgrade to PHP version 4.2.3Upgrade to PHP version 4.3.11Upgrade to PHP version 5.0.4 | Oct 1, 2012 | May 2, 2005 |
| Suse | — | Upgrade mod_php4-servletUpgrade php4-develUpgrade php4-imapUpgrade php4-sessionUpgrade php4-sysvshmUpgrade php4-exifUpgrade php4-fastcgiUpgrade apache2-mod_php4Upgrade apache-mod_php4Upgrade php4-pearUpgrade mod_php4-coreUpgrade php4-mysql | Feb 17, 2015 | May 2, 2005 |
| Ubuntu | — | Upgrade libapache2-mod-php4 | Nov 8, 2024 | May 2, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub