PHP 'proc_open()' Environment Parameter Safe Mode Restriction-Bypass Vulnerability
BID:32717
Info
PHP 'proc_open()' Environment Parameter Safe Mode Restriction-Bypass Vulnerability
| Bugtraq ID: | 32717 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 09 2008 12:00AM |
| Updated: | Dec 11 2008 05:31PM |
| Credit: | gat3way |
| Vulnerable: |
PHP PHP 5.2.8 PHP PHP 5.2.7 PHP PHP 5.2.6 PHP PHP 5.2.5 PHP PHP 5.2.4 PHP PHP 5.2.3 PHP PHP 5.2.2 PHP PHP 5.2.1 PHP PHP 5.1.6 PHP PHP 5.1.5 PHP PHP 5.1.4 PHP PHP 5.1.3 -RC1 PHP PHP 5.1.3 PHP PHP 5.1.2 PHP PHP 5.1.1 PHP PHP 5.1 PHP PHP 5.0.5 PHP PHP 5.0.4 PHP PHP 5.0.3 PHP PHP 5.0.2 PHP PHP 5.0.1 PHP PHP 5.0 candidate 3 PHP PHP 5.0 candidate 2 PHP PHP 5.0 candidate 1 PHP PHP 5.0 .0 PHP PHP 5.2 |
| Not Vulnerable: | |
Discussion
PHP 'proc_open()' Environment Parameter Safe Mode Restriction-Bypass Vulnerability
PHP is prone to a 'safe_mode' restriction-bypass vulnerability. Successful exploits could allow an attacker to bypass some safe-mode restrictions.
This vulnerability would be an issue in shared-hosting configurations where multiple users can create and execute arbitrary PHP script code, with the 'safe_mode' restrictions assumed to isolate the users from each other.
This issue is reported to affect PHP 5.2.8 on the Linux operating system; other versions may also be vulnerable.
PHP is prone to a 'safe_mode' restriction-bypass vulnerability. Successful exploits could allow an attacker to bypass some safe-mode restrictions.
This vulnerability would be an issue in shared-hosting configurations where multiple users can create and execute arbitrary PHP script code, with the 'safe_mode' restrictions assumed to isolate the users from each other.
This issue is reported to affect PHP 5.2.8 on the Linux operating system; other versions may also be vulnerable.
Exploit / POC
PHP 'proc_open()' Environment Parameter Safe Mode Restriction-Bypass Vulnerability
To exploit this issue, an attacker may use readily available tools.
An example exploit is available; please see the references for more information.
To exploit this issue, an attacker may use readily available tools.
An example exploit is available; please see the references for more information.
Solution / Fix
PHP 'proc_open()' Environment Parameter Safe Mode Restriction-Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
PHP 'proc_open()' Environment Parameter Safe Mode Restriction-Bypass Vulnerability
References:
References: