[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2013-263 ---- php54

ID: oval:org.secpod.oval:def:1600299Date: (C)2016-05-19   (M)2024-02-19
Class: PATCHFamily: unix




A memory corruption flaw was found in the way the openssl_x509_parse function of the PHP openssl extension parsed X.509 certificates. A remote attacker could use this flaw to provide a malicious self-signed certificate or a certificate signed by a trusted authority to a PHP application using the aforementioned function, causing the application to crash or, possibly, allow the attacker to execute arbitrary code with the privileges of the user running the PHP interpreter.

Platform:
Amazon Linux AMI
Product:
php54
Reference:
ALAS-2013-263
CVE-2013-6420
CVE    1
CVE-2013-6420
CPE    2
cpe:/o:amazon:linux
cpe:/a:php:php54

© SecPod Technologies