Vulnerability Name: | CVE-2004-0958 (CCN-17393) |
Assigned: | 2004-09-15 |
Published: | 2004-09-15 |
Updated: | 2017-10-11 |
Summary: | php_variables.c in PHP before 5.0.2 allows remote attackers to read sensitive memory contents via (1) GET, (2) POST, or (3) COOKIE GPC variables that end in an open bracket character, which causes PHP to calculate an incorrect string length. |
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | Scope: | Scope (S): Unchanged
| Impact Metrics: | Confidentiality (C): Low Integrity (I): None Availibility (A): None |
|
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Authentication (Au): None | Impact Metrics: | Confidentiality (C): Partial Integrity (I): None Availibility (A): None | 5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Athentication (Au): None
| Impact Metrics: | Confidentiality (C): Partial Integrity (I): None Availibility (A): None |
|
Vulnerability Type: | CWE-Other
|
Vulnerability Consequences: | Obtain Information |
References: | Source: CCN Type: VulnWatch Mailing List, Wed Sep 15 2004 - 11:59:41 CDT PHP Vulnerability N. 1
Source: VULNWATCH Type: UNKNOWN 20040915 [VulnWatch] PHP Vulnerability N. 1
Source: CCN Type: PHP Web site Source Log for php-src/main/php_variables.c
Source: MITRE Type: CNA CVE-2004-0958
Source: BUGTRAQ Type: UNKNOWN 20040915 PHP Vulnerability N. 1
Source: CCN Type: RHSA-2004-687 php security update
Source: CCN Type: SA12560 PHP Memory Leak and Arbitrary File Location Upload Vulnerabilities
Source: SECUNIA Type: UNKNOWN 12560
Source: CCN Type: SECTRACK ID: 1011279 PHP Array Parsing Error in php_variables May Disclose Memory Contents via phpinfo()
Source: SECTRACK Type: UNKNOWN 1011279
Source: CCN Type: GLSA-200410-04 PHP: Memory disclosure and arbitrary location file upload
Source: CCN Type: Fedora Update Notification FEDORA-2004-567 Fedora: php-4.3.10-2.4 update
Source: REDHAT Type: Patch, Vendor Advisory RHSA-2004:687
Source: CCN Type: BID-11334 PHP PHP_Variables Remote Memory Disclosure Vulnerability
Source: FEDORA Type: UNKNOWN FLSA:2344
Source: XF Type: UNKNOWN php-phpinfo-disclose-memory(17393)
Source: XF Type: UNKNOWN php-phpinfo-disclose-memory(17393)
Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10863
|
Vulnerable Configuration: | Configuration 1: cpe:/a:php:php:*:*:*:*:*:*:*:* (Version <= 5.0.2) Configuration RedHat 1: cpe:/o:redhat:enterprise_linux:*:*:*:*:*:*:*:* Configuration CCN 1: cpe:/a:php:php:4.2.0:-:*:*:*:*:*:*OR cpe:/a:php:php:4.2.1:-:*:*:*:*:*:*OR cpe:/a:php:php:4.2.3:-:*:*:*:*:*:*OR cpe:/a:php:php:4.2.2:*:*:*:*:*:*:*OR cpe:/a:php:php:4.3.0:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.4:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.9:*:*:*:*:*:*:*OR cpe:/a:php:php:4.3.10:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.11:-:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.0:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.2:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.3:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.3:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.6:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.5:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.7:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.1:*:*:*:*:*:*:*OR cpe:/a:php:php:4.3.2:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.5:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.6:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.7:-:*:*:*:*:*:*OR cpe:/a:php:php:4.3.8:*:*:*:*:*:*:*OR cpe:/a:php:php:4.4.1:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.4:-:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:beta1:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:beta2:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:beta3:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:beta4:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:rc1:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:rc2:*:*:*:*:*:*OR cpe:/a:php:php:5.0.0:rc3:*:*:*:*:*:*OR cpe:/a:php:php:5.0.1:-:*:*:*:*:*:*OR cpe:/a:php:php:4.4.8:-:*:*:*:*:*:*AND cpe:/o:redhat:enterprise_linux:3::ws:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux:3::es:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux:3::as:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux:3::desktop:*:*:*:*:*OR cpe:/o:fedoraproject:fedora_core:2:*:*:*:*:*:*:*
Denotes that component is vulnerable |
Oval Definitions |
Definition ID | Class | Title | Last Modified |
---|
oval:org.mitre.oval:def:10863 | V | php_variables.c in PHP before 5.0.2 allows remote attackers to read sensitive memory contents via (1) GET, (2) POST, or (3) COOKIE GPC variables that end in an open bracket character, which causes PHP to calculate an incorrect string length. | 2013-04-29 | oval:com.redhat.rhsa:def:20040687 | P | RHSA-2004:687: php security update (Important) | 2004-12-21 |
|
BACK |