PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
BID:72539
Info
PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
| Bugtraq ID: | 72539 |
| Class: | Design Error |
| CVE: |
CVE-2015-0231 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 09 2015 12:00AM |
| Updated: | Sep 23 2016 12:01AM |
| Credit: | Stefan Esser |
| Vulnerable: |
Ubuntu Ubuntu Linux 14.10 Ubuntu Ubuntu Linux 14.04 LTS Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Slackware Linux 14.1 Slackware Linux 14.0 Redhat Enterprise Linux Workstation 7 Redhat Enterprise Linux Server 7 Redhat Enterprise Linux HPC Node 7 Redhat Enterprise Linux Desktop 7 PHP PHP 5.6.4 PHP PHP 5.6.1 PHP PHP 5.5.14 PHP PHP 5.5.13 PHP PHP 5.5.12 PHP PHP 5.5.11 PHP PHP 5.5.10 PHP PHP 5.5.5 PHP PHP 5.5.4 PHP PHP 5.5.3 PHP PHP 5.5.1 PHP PHP 5.5 PHP PHP 5.4.30 PHP PHP 5.4.29 PHP PHP 5.4.26 PHP PHP 5.4.25 PHP PHP 5.4.17 PHP PHP 5.4.14 PHP PHP 5.4.8 PHP PHP 5.4.7 PHP PHP 5.4.6 PHP PHP 5.4.4 PHP PHP 5.4.3 PHP PHP 5.4.2 PHP PHP 5.4.1 PHP PHP 5.6.3 PHP PHP 5.6.2 PHP PHP 5.5.9 PHP PHP 5.5.8 PHP PHP 5.5.7 PHP PHP 5.5.20 PHP PHP 5.5.2 PHP PHP 5.5.19 PHP PHP 5.5.18 PHP PHP 5.5.17 PHP PHP 5.5.16 PHP PHP 5.5.15 PHP PHP 5.5.0-DEV PHP PHP 5.5.0 Rc2 PHP PHP 5.5.0 Rc1 PHP PHP 5.4.9 PHP PHP 5.4.5 PHP PHP 5.4.36 PHP PHP 5.4.35 PHP PHP 5.4.34 PHP PHP 5.4.33 PHP PHP 5.4.32 PHP PHP 5.4.31 PHP PHP 5.4.28 PHP PHP 5.4.27 PHP PHP 5.4.24 PHP PHP 5.4.23 PHP PHP 5.4.22 PHP PHP 5.4.21 PHP PHP 5.4.20 PHP PHP 5.4.19 PHP PHP 5.4.18 PHP PHP 5.4.16 Rc1 PHP PHP 5.4.16 PHP PHP 5.4.15 Rc1 PHP PHP 5.4.15 PHP PHP 5.4.14 Rc1 PHP PHP 5.4.13 Rc1 PHP PHP 5.4.13 PHP PHP 5.4.12 Rc2 PHP PHP 5.4.12 Rc1 PHP PHP 5.4.12 PHP PHP 5.4.11 PHP PHP 5.4.10 PHP PHP 5.4.0RC2 Oracle Linux 7 Oracle Linux 6 Mandriva Business Server 1 X86 64 Mandriva Business Server 1 Kerio Kerio Control 9.1.1 build 1324 Kerio Kerio Control 9.1.0 build 1087 HP Virtual Connect Enterprise Manager 6.2 HP Virtual Connect Enterprise Manager 6.1 HP Virtual Connect Enterprise Manager 6.0 HP Version Control Repository Manager 7.4.1 HP Version Control Repository Manager 7.4 HP Version Control Repository Manager 7.3.4 HP Version Control Repository Manager 7.3.1 HP Version Control Repository Manager 7.3 HP Version Control Repository Manager 7.2.2 HP Version Control Repository Manager 7.2.1 HP Version Control Repository Manager 7.2 HP Version Control Repository Manager 7.4.0a HP Version Control Repository Manager 7.3.3 HP Version Control Repository Manager 7.3.2 HP Version Control Agent 7.3.5 HP Version Control Agent 7.3.4 HP Version Control Agent 7.3.3 HP Version Control Agent 7.3.1 HP Version Control Agent 7.3 HP Version Control Agent 7.2.2 HP Version Control Agent 7.2.1 HP Version Control Agent 7.2 HP Version Control Agent 2.1.5 HP Version Control Agent 7.3.2 HP Systems Insight Manager 7.1.1 HP Systems Insight Manager 7.4 HP Systems Insight Manager 7.3.2 HP Systems Insight Manager 7.3.1 HP Systems Insight Manager 7.3 HP Systems Insight Manager 7.2.2 HP Systems Insight Manager 7.2.1 HP Systems Insight Manager 7.2 HP Systems Insight Manager 7.0 HP Systems Insight Manager 6.3 HP Systems Insight Manager 6.2 HP Systems Insight Manager 6.1 HP Systems Insight Manager 6.0 HP Systems Insight Manager 5.3 HP Systems Insight Manager 5.0 HP Systems Insight Manager 4.2 HP System Management Homepage (SMH) 7.4 HP System Management Homepage 7.3.2 HP System Management Homepage 7.2.3 HP System Management Homepage 7.2.2 HP System Management Homepage 7.2.1 HP System Management Homepage 7.2 HP System Management Homepage 7.1.2 HP System Management Homepage 7.1.1 HP System Management Homepage 6.2.2 7 HP System Management Homepage 3.2.7 HP System Management Homepage 3.0.2 .77 HP System Management Homepage 3.0 .68 HP System Management Homepage 3.0 .64 HP System Management Homepage 2.2.9 .1 HP System Management Homepage 2.2.8 HP System Management Homepage 2.2.6 HP System Management Homepage 2.1.15 HP System Management Homepage 2.1.12 HP System Management Homepage 2.1.11 HP System Management Homepage 2.1.10 HP System Management Homepage 2.1.9 HP System Management Homepage 2.1.8 HP System Management Homepage 2.1.7 HP System Management Homepage 2.1.6 HP System Management Homepage 2.1.5 HP System Management Homepage 2.1.4 HP System Management Homepage 2.1.3 HP System Management Homepage 2.1.2 HP System Management Homepage 2.1.1 HP System Management Homepage 2.1 HP System Management Homepage 2.0.2 HP System Management Homepage 2.0.1 HP System Management Homepage 2.0 HP System Management Homepage 7.4 HP System Management Homepage 7.3.3.1 HP System Management Homepage 7.3.1 HP System Management Homepage 7.3 HP System Management Homepage 7.2.4.1 HP System Management Homepage 7.2 HP System Management Homepage 7.1 HP System Management Homepage 7.0 HP System Management Homepage 6.3.0 HP System Management Homepage 6.3 HP System Management Homepage 6.2.0 HP System Management Homepage 6.2 HP System Management Homepage 6.0 HP System Management Homepage 3.2.2 HP System Management Homepage 3.0.1 HP Insight Orchestration 6.2 HP Insight Orchestration 6.1 HP Insight Orchestration 6.0 HP HP-UX Tomcat Servlet Engine 6.0.39.03 HP HP-UX PHP 5.4.11.04 HP HP-UX Apache-Based Web Server 4.04 HP HP-UX Apache-Based Web Server 2.2.15.22 HP HP-UX B.11.31 Gentoo Linux Apple Mac Os X 10.10.5 Apple Mac OS X 10.10 Apple Mac OS X 10.9.5 Apple Mac OS X 10.9.1 Apple Mac OS X 10.8.5 Apple Mac OS X 10.8.4 Apple Mac OS X 10.8.2 Apple Mac OS X 10.8.1 Apple Mac OS X 10.8 Apple Mac OS X 10.7 Apple Mac OS X 10.9.4 Apple Mac OS X 10.9.3 Apple Mac OS X 10.9.2 Apple Mac OS X 10.9 Apple Mac OS X 10.8.3 Apple Mac OS X 10.7.5 Apple Mac OS X 10.7.4 Apple Mac OS X 10.7.3 Apple Mac OS X 10.7.1 Apple Mac OS X 10.6.8 Apple Mac Os X 10.10.4 Apple Mac Os X 10.10.3 Apple Mac OS X 10.10.2 Apple Mac OS X 10.10.1 |
| Not Vulnerable: |
PHP PHP 5.6.5 PHP PHP 5.5.21 PHP PHP 5.4.37 Kerio Kerio Control 9.1.3 HP Virtual Connect Enterprise Manager SDK 7.5.0 HP Version Control Repository Manager 7.5.0 HP Version Control Agent 7.5.0 HP Systems Insight Manager 7.5.0 HP System Management Homepage (SMH) 7.5 HP System Management Homepage 7.5 HP Insight Orchestration 7.5.0 Apple Mac Os X 10.11 |
Discussion
PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
PHP is prone to a remote code-execution vulnerability.
Successfully exploiting this issue may allow remote attackers to execute arbitrary code in the context of a web server. Failed attempts will likely result in denial-of-service conditions.
Following are vulnerable:
PHP 5.4.x prior to 5.4.37
PHP 5.5.x prior to 5.5.21
PHP 5.6.x prior to 5.6.5
PHP is prone to a remote code-execution vulnerability.
Successfully exploiting this issue may allow remote attackers to execute arbitrary code in the context of a web server. Failed attempts will likely result in denial-of-service conditions.
Following are vulnerable:
PHP 5.4.x prior to 5.4.37
PHP 5.5.x prior to 5.5.21
PHP 5.6.x prior to 5.6.5
Exploit / POC
PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
References:
References:
- CVE-2015-0231 php: use after free vulnerability in unserialize() (incomplete fix (stas)
- PHP Homepage (PHP)
- Sec Bug #68710 - Use After Free Vulnerability in PHP's unserialize() (Still Expl (PHP)
- SEC Consult Vulnerability Lab Security Advisory < 20160922-0 > (SEC Consult Vulnerability Lab)
- [slackware-security] php (SSA:2015-111-10) (Slackware)
- HP System Management Homepage (SMH) on Linux and Windows, Multiple Vulnerabiliti (HP)
- HPSBMU03396 rev.1 - HP Version Control Repository Manager (VCRM) on Windows and (Seclist)
- HPSBUX03337 SSRT102066 rev.1 - HP-UX Apache Web Server Suite running Apache Web (HP)
- Oracle Linux Bulletin - January 2016 (Oracle)
- Security Advisory Important: php security and bug fix update (Redhat)