PHP CVE-2015-0273 Use After Free Remote Code Execution Vulnerability
BID:72701
Info
PHP CVE-2015-0273 Use After Free Remote Code Execution Vulnerability
| Bugtraq ID: | 72701 |
| Class: | Design Error |
| CVE: |
CVE-2015-0273 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 20 2015 12:00AM |
| Updated: | Jul 06 2016 12:22PM |
| Credit: | Taoguang Chen |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 PHP PHP 5.4.3 PHP PHP 5.4.2 PHP PHP 5.4.1 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 HP Virtual Connect Enterprise Manager 6.2 HP Virtual Connect Enterprise Manager 6.1 HP Virtual Connect Enterprise Manager 6.0 HP Version Control Agent 2.1.5 HP Systems Insight Manager 7.0 HP Systems Insight Manager 6.3 HP Systems Insight Manager 6.2 HP Systems Insight Manager 6.1 HP Systems Insight Manager 6.0 HP Systems Insight Manager 5.3 HP Systems Insight Manager 5.0 HP Systems Insight Manager 4.2 HP System Management Homepage 6.2.2 7 HP System Management Homepage 3.0.2 .77 HP System Management Homepage 3.0 .68 HP System Management Homepage 3.0 .64 HP System Management Homepage 2.2.9 .1 HP System Management Homepage 2.2.8 HP System Management Homepage 2.2.6 HP System Management Homepage 2.1.12 HP System Management Homepage 2.1.11 HP System Management Homepage 2.1.10 HP System Management Homepage 2.1.9 HP System Management Homepage 2.1.8 HP System Management Homepage 2.1.7 HP System Management Homepage 2.1.6 HP System Management Homepage 2.1.5 HP System Management Homepage 2.1.4 HP System Management Homepage 2.1.3 HP System Management Homepage 2.1.2 HP System Management Homepage 2.1.1 HP System Management Homepage 2.1 HP System Management Homepage 2.0.2 HP System Management Homepage 2.0.1 HP System Management Homepage 2.0 HP System Management Homepage 7.0 HP System Management Homepage 6.3 HP System Management Homepage 6.2 HP System Management Homepage 6.0 HP Insight Orchestration 6.2 HP Insight Orchestration 6.1 HP Insight Orchestration 6.0 HP HP-UX B.11.31 CentOS CentOS 6 Apple Mac Os X 10.7.4 Apple Mac Os X 10.7.3 Apple Mac Os X 10.7.1 |
| Not Vulnerable: | |
Discussion
PHP CVE-2015-0273 Use After Free Remote Code Execution Vulnerability
PHP is prone to a remote code-execution vulnerability.
Successfully exploiting this issue may allow remote attackers to leak arbitrary memory or execute arbitrary code in the context of a web server. Failed attempts will likely result in denial-of-service conditions.
Following versions are vulnerable:
PHP 5.4.x prior to 5.4.38
PHP 5.5.x prior to 5.5.22
PHP 5.6.x prior to 5.6.6
PHP is prone to a remote code-execution vulnerability.
Successfully exploiting this issue may allow remote attackers to leak arbitrary memory or execute arbitrary code in the context of a web server. Failed attempts will likely result in denial-of-service conditions.
Following versions are vulnerable:
PHP 5.4.x prior to 5.4.38
PHP 5.5.x prior to 5.5.22
PHP 5.6.x prior to 5.6.6
Exploit / POC
PHP CVE-2015-0273 Use After Free Remote Code Execution Vulnerability
The following proof of concept is available:
The following proof of concept is available:
Solution / Fix
PHP CVE-2015-0273 Use After Free Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
PHP CVE-2015-0273 Use After Free Remote Code Execution Vulnerability
References:
References:
- CVE-2015-0273 php: use after free vulnerability in unserialize() with DateTimeZo (Red Hat Bugzilla)
- PHP Homepage (PHP)
- Use After Free Vulnerability in unserialize() with DateTime* [CVE-2015-0273] (Taoguang Chen)
- HP System Management Homepage (SMH) on Linux and Windows, Multiple Vulnerabiliti (HP)
- HPSBMU03396 rev.1 - HP Version Control Repository Manager (VCRM) on Windows and (Seclist)
- HPSBUX03337 SSRT102066 rev.1 - HP-UX Apache Web Server Suite running Apache Web (HP)
- Oracle Linux Bulletin - January 2016 (Oracle)
- Security Advisory - AlienVault v5.2 addresses 55 vulnerabilities (AlienVault)
- Security Advisory Important: php security and bug fix update (Redhat)
- swg21972384 : IBM Tealeaf Customer Experience PCA Web UI PHP security issues (IBM)