10 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
0.975 High
EPSS
Percentile
100.0%
Versions of PHP 5.4.x earlier than 5.4.38, 5.5.x earlier than 5.5.22, or 5.6.x earlier than 5.6.6 are exposed to the following issues :
A heap-based buffer overflow flaw in the GNU C Library (glibc) due to improperly validating user-supplied input in the glibc functions __nss_hostname_digits_dots(), gethostbyname(), and gethostbyname2(). This allows a remote attacker to cause a buffer overflow, resulting in a denial of service condition or the execution of arbitrary code. (GHOST) (Bug 68925 / CVE-2015-0235)
A use-after-free flaw exists in the function php_date_timezone_initialize_from_hash() within the ‘ext/date/php_date.c’ script. An attacker can exploit this to access sensitive information or crash applications linked to PHP. (Bug 68942 / CVE-2015-0273)
A use-after-free flaw exists in the function ‘phar_rename_archive’ in the source file ‘phar_object.c’. An attacker can cause a denial of service or possibly have unspecified other impact via vectors that trigger an attempted renaming of a Phar archive to the name of an existing file. (Bug 68901 / CVE-2015-2301)
A heap-based buffer overflow flaw affects the ‘enchant_broker_request_dict’ function in the source file ‘ext/enchant/enchant.c’. This allows remote attackers to execute arbitrary code via vectors that trigger creation of multiple dictionaries. (Bug 68552 / CVE-2014-9705)
Binary data 8677.prm
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9705
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0235
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0273
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2301
www.nessus.org/u?c7a6ddbd
www.php.net/ChangeLog-5.php#5.6.6
bugs.php.net/bug.php?id=68552
bugs.php.net/bug.php?id=68827
bugs.php.net/bug.php?id=68901
bugs.php.net/bug.php?id=68925
bugs.php.net/bug.php?id=68942