vendor:
PHP
by:
Jonathan Salwan
7.5
CVSS
HIGH
Stack-based buffer overflow
119
CWE
Product Name: PHP
Affected Version From: PHP 5.3.3
Affected Version To: PHP 5.3.6
Patch Exists: YES
Related CWE: CVE-2011-1938
CPE: 2.3:a:php:php:5.3.6
Metasploit:
https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2012-0715/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2012-0710/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2011-1938/, https://www.rapid7.com/db/vulnerabilities/apple-osx-php-cve-2011-1938/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2011-1938/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2011-1423/, https://www.rapid7.com/db/vulnerabilities/php-cve-2011-1938/, https://www.rapid7.com/db/vulnerabilities/hpsmh-cve-2011-1938/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2011-1938/, https://www.rapid7.com/db/vulnerabilities/apple-osx-addressbook-cve-2011-1938/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: UNIX
2011
PHP 5.3.6 Buffer Overflow PoC (ROP)
Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c in PHP 5.3.3 through 5.3.6 might allow context-dependent attackers to execute arbitrary code via a long pathname for a UNIX socket.
Mitigation:
Upgrade to the latest version of PHP 5.3.7 or later.