vulnerability
Oracle Linux: CVE-2015-4605: ELSA-2015-1186: php55-php security update (IMPORTANT) (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
8 | (AV:N/AC:L/Au:N/C:N/I:N/A:C) | 2016-05-16 | 2024-10-16 | 2024-12-18 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
2016-05-16
Added
2024-10-16
Modified
2024-12-18
Description
The mcopy function in softmagic.c in file 5.x, as used in the Fileinfo component in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, does not properly restrict a certain offset value, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string that is mishandled by a "Python script text executable" rule.
Solution(s)
oracle-linux-upgrade-phporacle-linux-upgrade-php54oracle-linux-upgrade-php54-phporacle-linux-upgrade-php54-php-bcmathoracle-linux-upgrade-php54-php-clioracle-linux-upgrade-php54-php-commonoracle-linux-upgrade-php54-php-dbaoracle-linux-upgrade-php54-php-develoracle-linux-upgrade-php54-php-enchantoracle-linux-upgrade-php54-php-fpmoracle-linux-upgrade-php54-php-gdoracle-linux-upgrade-php54-php-imaporacle-linux-upgrade-php54-php-intloracle-linux-upgrade-php54-php-ldaporacle-linux-upgrade-php54-php-mbstringoracle-linux-upgrade-php54-php-mysqlndoracle-linux-upgrade-php54-php-odbcoracle-linux-upgrade-php54-php-pdooracle-linux-upgrade-php54-php-pecl-zendopcacheoracle-linux-upgrade-php54-php-pgsqloracle-linux-upgrade-php54-php-processoracle-linux-upgrade-php54-php-pspelloracle-linux-upgrade-php54-php-recodeoracle-linux-upgrade-php54-php-snmporacle-linux-upgrade-php54-php-soaporacle-linux-upgrade-php54-php-tidyoracle-linux-upgrade-php54-php-xmloracle-linux-upgrade-php54-php-xmlrpcoracle-linux-upgrade-php54-runtimeoracle-linux-upgrade-php54-scldeveloracle-linux-upgrade-php55-phporacle-linux-upgrade-php55-php-bcmathoracle-linux-upgrade-php55-php-clioracle-linux-upgrade-php55-php-commonoracle-linux-upgrade-php55-php-dbaoracle-linux-upgrade-php55-php-develoracle-linux-upgrade-php55-php-enchantoracle-linux-upgrade-php55-php-fpmoracle-linux-upgrade-php55-php-gdoracle-linux-upgrade-php55-php-gmporacle-linux-upgrade-php55-php-intloracle-linux-upgrade-php55-php-ldaporacle-linux-upgrade-php55-php-mbstringoracle-linux-upgrade-php55-php-mysqlndoracle-linux-upgrade-php55-php-odbcoracle-linux-upgrade-php55-php-opcacheoracle-linux-upgrade-php55-php-pdooracle-linux-upgrade-php55-php-pgsqloracle-linux-upgrade-php55-php-processoracle-linux-upgrade-php55-php-pspelloracle-linux-upgrade-php55-php-recodeoracle-linux-upgrade-php55-php-snmporacle-linux-upgrade-php55-php-soaporacle-linux-upgrade-php55-php-xmloracle-linux-upgrade-php55-php-xmlrpcoracle-linux-upgrade-php-bcmathoracle-linux-upgrade-php-clioracle-linux-upgrade-php-commonoracle-linux-upgrade-php-dbaoracle-linux-upgrade-php-develoracle-linux-upgrade-php-embeddedoracle-linux-upgrade-php-enchantoracle-linux-upgrade-php-fpmoracle-linux-upgrade-php-gdoracle-linux-upgrade-php-intloracle-linux-upgrade-php-ldaporacle-linux-upgrade-php-mbstringoracle-linux-upgrade-php-mysqloracle-linux-upgrade-php-mysqlndoracle-linux-upgrade-php-odbcoracle-linux-upgrade-php-pdooracle-linux-upgrade-php-pgsqloracle-linux-upgrade-php-processoracle-linux-upgrade-php-pspelloracle-linux-upgrade-php-recodeoracle-linux-upgrade-php-snmporacle-linux-upgrade-php-soaporacle-linux-upgrade-php-xmloracle-linux-upgrade-php-xmlrpc

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.