PHP Hash_Update_File Freed Resource Access Code Execution Vulnerability
BID:23062
Info
PHP Hash_Update_File Freed Resource Access Code Execution Vulnerability
| Bugtraq ID: | 23062 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 20 2007 12:00AM |
| Updated: | Mar 21 2007 04:03PM |
| Credit: | Stefan Esser discovered this vulnerability. |
| Vulnerable: |
PHP PHP 5.2.1 PHP PHP 5.1.6 PHP PHP 5.1.5 PHP PHP 5.1.4 PHP PHP 5.1.3 -RC1 PHP PHP 5.1.3 PHP PHP 5.1.2 PHP PHP 5.1.1 PHP PHP 5.1 PHP PHP 5.0.5 PHP PHP 5.0.4 PHP PHP 5.0.3 PHP PHP 5.0.2 PHP PHP 5.0.1 PHP PHP 5.0 candidate 3 PHP PHP 5.0 candidate 2 PHP PHP 5.0 candidate 1 PHP PHP 5.0 .0 PHP PHP 5.2 |
| Not Vulnerable: | |
Discussion
PHP Hash_Update_File Freed Resource Access Code Execution Vulnerability
PHP is prone to a locally exploitable arbitrary-code-execution vulnerability. This issue stems from a design error.
This issue affects the 'hash_update_file()' function. An attacker can execute arbitrary code by gaining access to freed memory and overwriting it with malicious data.
This issue affects PHP 5.0 through 5.2.1.
PHP is prone to a locally exploitable arbitrary-code-execution vulnerability. This issue stems from a design error.
This issue affects the 'hash_update_file()' function. An attacker can execute arbitrary code by gaining access to freed memory and overwriting it with malicious data.
This issue affects PHP 5.0 through 5.2.1.
Exploit / POC
PHP Hash_Update_File Freed Resource Access Code Execution Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
PHP Hash_Update_File Freed Resource Access Code Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
References
PHP Hash_Update_File Freed Resource Access Code Execution Vulnerability
References:
References: