Red Hat Security Advisory 2015-1219-01

Discussion in 'News Aggregator' started by Packet Storm, 10 Jul 2015.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2015-1219-01 - PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. A flaw was found in the way PHP parsed multipart HTTP POST requests. A specially crafted request could cause PHP to use an excessive amount of CPU time. An integer overflow flaw leading to a heap-based buffer overflow was found in the way PHP's FTP extension parsed file listing FTP server responses. A malicious FTP server could use this flaw to cause a PHP application to crash or, possibly, execute arbitrary code.

    Continue reading...
     

Share This Page

Loading...