VDB
BDU%3A2022-02640
BDU%3A2022-02640
PUBLISHED
CVSS 7.5 HIGH
Уязвимость функции process_nested_data интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
7.5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Red Hat Inc., Сообщество свободного программного обеспечения, PHP Group | Ubuntu, Red Hat Enterprise Linux, Debian GNU/Linux, PHP |
Timeline
- Apr 27, 2022 CVE Published
- Mar 21, 2026 Distribution Patch
References
- https://bugs.php.net/bug.php?id=68594 url
- http://git.php.net/?p=php-src.git;a=commit;h=630f9c33c23639de85c3fd306b209b538b73b4c9 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1175718 url
- http://php.net/ChangeLog-5.php url
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00029.html url
- http://lists.opensuse.org/opensuse-updates/2015-02/msg00079.html url
- http://www.debian.org/security/2014/dsa-3117 url
- http://rhn.redhat.com/errata/RHSA-2015-1135.html url
- http://marc.info/?l=bugtraq&m=143403519711434&w=2 url
- http://marc.info/?l=bugtraq&m=143748090628601&w=2 url
- http://marc.info/?l=bugtraq&m=144050155601375&w=2 url
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html url
- http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html url
- http://www.securityfocus.com/bid/71791 url
- https://security.gentoo.org/glsa/201503-03 url
- http://rhn.redhat.com/errata/RHSA-2015-1066.html url
- http://rhn.redhat.com/errata/RHSA-2015-1053.html url
- https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2014-8142.xml advisory
- https://ubuntu.com/security/CVE-2014-8142 advisory
- https://security-tracker.debian.org/tracker/CVE-2014-8142 advisory