vulnerability

Oracle Linux: CVE-2015-4643: ELSA-2015-1186: php55-php security update (IMPORTANT) (Multiple Advisories)

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
2016-05-16
Added
2024-10-16
Modified
2024-12-05

Description

Integer overflow in the ftp_genlist function in ext/ftp/ftp.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 allows remote FTP servers to execute arbitrary code via a long reply to a LIST command, leading to a heap-based buffer overflow. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-4022.

Solution(s)

oracle-linux-upgrade-php54-phporacle-linux-upgrade-php54-php-bcmathoracle-linux-upgrade-php54-php-clioracle-linux-upgrade-php54-php-commonoracle-linux-upgrade-php54-php-dbaoracle-linux-upgrade-php54-php-develoracle-linux-upgrade-php54-php-enchantoracle-linux-upgrade-php54-php-fpmoracle-linux-upgrade-php54-php-gdoracle-linux-upgrade-php54-php-imaporacle-linux-upgrade-php54-php-intloracle-linux-upgrade-php54-php-ldaporacle-linux-upgrade-php54-php-mbstringoracle-linux-upgrade-php54-php-mysqlndoracle-linux-upgrade-php54-php-odbcoracle-linux-upgrade-php54-php-pdooracle-linux-upgrade-php54-php-pgsqloracle-linux-upgrade-php54-php-processoracle-linux-upgrade-php54-php-pspelloracle-linux-upgrade-php54-php-recodeoracle-linux-upgrade-php54-php-snmporacle-linux-upgrade-php54-php-soaporacle-linux-upgrade-php54-php-tidyoracle-linux-upgrade-php54-php-xmloracle-linux-upgrade-php54-php-xmlrpcoracle-linux-upgrade-php55-phporacle-linux-upgrade-php55-php-bcmathoracle-linux-upgrade-php55-php-clioracle-linux-upgrade-php55-php-commonoracle-linux-upgrade-php55-php-dbaoracle-linux-upgrade-php55-php-develoracle-linux-upgrade-php55-php-enchantoracle-linux-upgrade-php55-php-fpmoracle-linux-upgrade-php55-php-gdoracle-linux-upgrade-php55-php-gmporacle-linux-upgrade-php55-php-intloracle-linux-upgrade-php55-php-ldaporacle-linux-upgrade-php55-php-mbstringoracle-linux-upgrade-php55-php-mysqlndoracle-linux-upgrade-php55-php-odbcoracle-linux-upgrade-php55-php-opcacheoracle-linux-upgrade-php55-php-pdooracle-linux-upgrade-php55-php-pgsqloracle-linux-upgrade-php55-php-processoracle-linux-upgrade-php55-php-pspelloracle-linux-upgrade-php55-php-recodeoracle-linux-upgrade-php55-php-snmporacle-linux-upgrade-php55-php-soaporacle-linux-upgrade-php55-php-xmloracle-linux-upgrade-php55-php-xmlrpc
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.