VDB
BDU%3A2022-02525
BDU%3A2022-02525
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции phar_parse_zipfile интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Сообщество свободного программного обеспечения, PHP Group, Apple Inc. | Ubuntu, Debian GNU/Linux, PHP, OS X |
Timeline
- Apr 25, 2022 CVE Published
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- https://support.apple.com/HT205637 url
- https://bugs.php.net/bug.php?id=70433 url
- http://git.php.net/?p=php-src.git;a=commit;h=1ddf72180a52d247db88ea42a3e35f824a8fbda1 url
- http://www.openwall.com/lists/oss-security/2015/10/05/8 url
- http://www.php.net/ChangeLog-5.php url
- http://lists.apple.com/archives/security-announce/2015/Dec/msg00005.html url
- http://www.securityfocus.com/bid/76959 url
- https://security.gentoo.org/glsa/201606-10 url
- http://www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.461720 url
- http://www.ubuntu.com/usn/USN-2786-1 url
- http://lists.opensuse.org/opensuse-updates/2016-01/msg00099.html url
- http://www.debian.org/security/2015/dsa-3380 url
- https://ubuntu.com/security/CVE-2015-7804 advisory
- https://security-tracker.debian.org/tracker/CVE-2015-7804 advisory