VDB
CVE-2008-1488
CVE-2008-1488
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Stack-based buffer overflow in apc.c in Alternative PHP Cache (APC) 3.0.11 through 3.0.16 allows remote attackers to execute arbitrary code via a long filename.
EPSS 7.32% · 91.8th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
7.32%
91.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| pecl-php | alternative_php_cache | 3.0.12p1, 3.0.12p2, 3.0.13 |
Timeline
- Mar 24, 2008 CVE Published
- Mar 26, 2008 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- http://pecl.php.net/bugs/bug.php?id=13415 url
- FEDORA-2008-6401 vendor-advisory
- 29745 third-party-advisory
- http://papasian.org/~dannyp/apcsmash.php.txt url
- apc-apcsearchpaths-bo(41420) vdb
- 29509 third-party-advisory
- FEDORA-2008-6344 vendor-advisory
- MDVSA-2008:082 vendor-advisory
- 31082 third-party-advisory
- GLSA-200804-07 vendor-advisory
- 28457 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2008-1488 advisory