VDB
BDU%3A2022-02520
BDU%3A2022-02520
PUBLISHED
CVSS 7.099999904632568 HIGH
Уязвимость компонента ext/mysqlnd/mysqlnd.c интерпретатора языка программирования PHP, позволяющая нарушителю проводить спуфинг-атаки
Risk Scores
CVSS 2.0
7.099999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| PHP Group, Canonical Ltd., Сообщество свободного программного обеспечения | PHP, Ubuntu, Debian GNU/Linux |
Timeline
- Apr 25, 2022 CVE Published
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- http://php.net/ChangeLog-5.php url
- http://git.php.net/?p=php-src.git;a=commit;h=97aa752fee61fccdec361279adbfb17a3c60f3f4 url
- https://bugs.php.net/bug.php?id=69669 url
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00052.html url
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00057.html url
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00058.html url
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00056.html url
- http://www.ubuntu.com/usn/USN-2952-1 url
- http://www.ubuntu.com/usn/USN-2952-2 url
- https://ubuntu.com/security/CVE-2015-8838 advisory
- https://security-tracker.debian.org/tracker/CVE-2015-8838 advisory