Vulnerability Name:

CVE-2014-9912 (CCN-120365)

Assigned:2016-11-29
Published:2016-11-29
Updated:2017-01-07
Summary:The get_icu_disp_value_src_php function in ext/intl/locale/locale_methods.c in PHP before 5.3.29, 5.4.x before 5.4.30, and 5.5.x before 5.5.14 does not properly restrict calls to the ICU uresbund.cpp component, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a locale_get_display_name call with a long first argument.
CVSS v3 Severity:9.8 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
8.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
6.4 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2014-9912

Source: CCN
Type: oss-sec Mailing List, Thu, 24 Nov 2016 19:51:34 -0500
Re: CVE request: icu: stack-based buffer overflow in uloc_getDisplayName

Source: MLIST
Type: Third Party Advisory
[oss-security] 20161124 Re: CVE request: icu: stack-based buffer overflow in uloc_getDisplayName

Source: CONFIRM
Type: Release Notes, Vendor Advisory
http://www.php.net/ChangeLog-5.php

Source: BID
Type: UNKNOWN
68549

Source: CCN
Type: BID-68549
PHP libicu 'locale_get_display_name()' Stack Buffer Overflow Vulnerability

Source: CCN
Type: PHP Web site
Buffer overflow in locale_get_display_name->uloc_getDisplayName (libicu 4.8.1)

Source: CONFIRM
Type: Patch, Vendor Advisory
https://bugs.php.net/bug.php?id=67397

Source: CONFIRM
Type: Issue Tracking, Patch, Third Party Advisory, VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=1383569

Source: XF
Type: UNKNOWN
php-cve20149912-bo(120365)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:php:php:*:*:*:*:*:*:*:* (Version <= 5.3.28)
  • OR cpe:/a:php:php:5.4.0:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.1:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.2:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.3:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.4:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.5:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.6:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.7:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.8:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.9:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.10:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.11:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.12:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.12:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.12:rc2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.13:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.13:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.14:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.14:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.15:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.15:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.16:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.17:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.18:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.19:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.20:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.21:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.22:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.23:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.24:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.25:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.26:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.27:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.28:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.29:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha3:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha5:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha6:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta3:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:rc2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.1:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.2:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.3:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.4:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.5:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.6:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.7:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.8:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.9:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.10:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.11:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.12:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.13:-:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:php:php:5.4.9:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha6:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.13:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.4.29:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.3.28:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20149912
    V
    CVE-2014-9912
    2022-05-20
    oval:org.opensuse.security:def:34683
    P
    Security update for ghostscript (Moderate)
    2022-01-14
    oval:org.opensuse.security:def:30150
    P
    Security update for postgresql10 (Important)
    2021-11-22
    oval:org.opensuse.security:def:32224
    P
    Security update for postgresql96 (Important)
    2021-11-22
    oval:org.opensuse.security:def:34576
    P
    Security update for qemu (Important)
    2021-10-26
    oval:org.opensuse.security:def:30239
    P
    Security update for aspell (Important)
    2021-08-25
    oval:org.opensuse.security:def:33954
    P
    Security update for mariadb (Important)
    2021-08-06
    oval:org.opensuse.security:def:33943
    P
    Security update for MozillaFirefox (Important)
    2021-07-16
    oval:org.opensuse.security:def:31221
    P
    Security update for MozillaFirefox (Important)
    2021-07-16
    oval:org.opensuse.security:def:35257
    P
    Security update for openexr (Important)
    2021-06-24
    oval:org.opensuse.security:def:36273
    P
    ppc64-diag-2.6.7-1.31 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36315
    P
    unzip-6.00-11.13.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:34418
    P
    Security update for curl (Moderate)
    2021-04-28
    oval:org.opensuse.security:def:34038
    P
    Security update for wpa_supplicant (Important)
    2021-03-09
    oval:org.opensuse.security:def:32263
    P
    Security update for java-1_8_0-ibm (Important)
    2021-02-26
    oval:org.opensuse.security:def:34634
    P
    Security update for java-1_8_0-openjdk (Moderate)
    2021-02-19
    oval:org.opensuse.security:def:30018
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP2) (Important)
    2021-02-10
    oval:org.opensuse.security:def:33942
    P
    Security update for sudo (Important)
    2021-01-26
    oval:org.opensuse.security:def:35564
    P
    gzip-1.3.12-69.19.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35591
    P
    libmysqlclient15-32bit-5.0.67-13.20.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35525
    P
    avahi-0.6.23-11.19.22 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35635
    P
    quagga-0.99.15-0.1.55 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:34778
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:30536
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:35429
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30767
    P
    Security update for aspell (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35167
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30742
    P
    Security update for ansible (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31077
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:27094
    P
    bzip2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31482
    P
    Security update for python (Important)
    2020-12-01
    oval:org.opensuse.security:def:27520
    P
    netatalk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29933
    P
    Security update for libgssglue
    2020-12-01
    oval:org.opensuse.security:def:28304
    P
    Security update for ocaml (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30296
    P
    Security update for strongswan
    2020-12-01
    oval:org.opensuse.security:def:34747
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:35009
    P
    Security update for gnutls (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30679
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30853
    P
    Security update for djvulibre (Low)
    2020-12-01
    oval:org.opensuse.security:def:35476
    P
    Security update for php53 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26902
    P
    gd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31377
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27316
    P
    vsftpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31586
    P
    Security update for tcpdump (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34272
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27622
    P
    Security update for icu
    2020-12-01
    oval:org.opensuse.security:def:34789
    P
    Security update for SDL (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30591
    P
    Security update for openssl-certs
    2020-12-01
    oval:org.opensuse.security:def:35470
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30768
    P
    Security update for atftp (Important)
    2020-12-01
    oval:org.opensuse.security:def:31380
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26890
    P
    evince on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31134
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:27175
    P
    libarchive2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31521
    P
    Security update for rsync (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27569
    P
    subversion on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29944
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:28339
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34777
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:30382
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:34791
    P
    Security update for a2ps
    2020-12-01
    oval:org.opensuse.security:def:35110
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:30698
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:30985
    P
    Security update for inn (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26966
    P
    libpulse-browse0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31433
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27467
    P
    libnewt0_52 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29932
    P
    Security update for libgnomesu
    2020-12-01
    oval:org.opensuse.security:def:34329
    P
    Security update for sane-backends (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27666
    P
    Security update for rubygem-activesupport-2_3
    2020-12-01
    oval:org.opensuse.security:def:34722
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34873
    P
    Security update for CUPS
    2020-12-01
    oval:org.opensuse.security:def:30640
    P
    Security update for xorg-x11-libX11 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30779
    P
    Security update for bash (Important)
    2020-12-01
    oval:org.opensuse.security:def:35417
    P
    Security update for openssl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31418
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26891
    P
    evolution-data-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27232
    P
    log4net on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31542
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34174
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27608
    P
    Security update for fastjar
    2020-12-01
    oval:com.ubuntu.precise:def:20149912000
    V
    CVE-2014-9912 on Ubuntu 12.04 LTS (precise) - low.
    2017-01-04
    oval:com.ubuntu.xenial:def:201499120000000
    V
    CVE-2014-9912 on Ubuntu 16.04 LTS (xenial) - low.
    2017-01-04
    oval:com.ubuntu.trusty:def:20149912000
    V
    CVE-2014-9912 on Ubuntu 14.04 LTS (trusty) - low.
    2017-01-04
    oval:com.ubuntu.xenial:def:20149912000
    V
    CVE-2014-9912 on Ubuntu 16.04 LTS (xenial) - low.
    2017-01-04
    BACK
    php php *
    php php 5.4.0
    php php 5.4.1
    php php 5.4.2
    php php 5.4.3
    php php 5.4.4
    php php 5.4.5
    php php 5.4.6
    php php 5.4.7
    php php 5.4.8
    php php 5.4.9
    php php 5.4.10
    php php 5.4.11
    php php 5.4.12
    php php 5.4.12 rc1
    php php 5.4.12 rc2
    php php 5.4.13
    php php 5.4.13 rc1
    php php 5.4.14
    php php 5.4.14 rc1
    php php 5.4.15
    php php 5.4.15 rc1
    php php 5.4.16 rc1
    php php 5.4.17
    php php 5.4.18
    php php 5.4.19
    php php 5.4.20
    php php 5.4.21
    php php 5.4.22
    php php 5.4.23
    php php 5.4.24
    php php 5.4.25
    php php 5.4.26
    php php 5.4.27
    php php 5.4.28
    php php 5.4.29
    php php 5.5.0
    php php 5.5.0 alpha1
    php php 5.5.0 alpha2
    php php 5.5.0 alpha3
    php php 5.5.0 alpha4
    php php 5.5.0 alpha5
    php php 5.5.0 alpha6
    php php 5.5.0 beta1
    php php 5.5.0 beta2
    php php 5.5.0 beta3
    php php 5.5.0 beta4
    php php 5.5.0 rc1
    php php 5.5.0 rc2
    php php 5.5.1
    php php 5.5.2
    php php 5.5.3
    php php 5.5.4
    php php 5.5.5
    php php 5.5.6
    php php 5.5.7
    php php 5.5.8
    php php 5.5.9
    php php 5.5.10
    php php 5.5.11
    php php 5.5.12
    php php 5.5.13
    php php 5.4.9 -
    php php 5.5.0 beta4
    php php 5.5.0 alpha6
    php php 5.5.13 -
    php php 5.4.29 -
    php php 5.3.28