Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.20, and 5.6.x before 5.6.4 allows remote attackers to execute arbitrary code via a crafted unserialize call that leverages improper handling of duplicate keys within the serialized properties of an object, a different vulnerability than CVE-2004-1019.
Monthly Archives: December 2014
Bugtraq: Mobilis MobiConnect 3G ZDServer v1.0.1.2 – Privilege Escalation Vulnerability
Mobilis MobiConnect 3G ZDServer v1.0.1.2 – Privilege Escalation Vulnerability
Bugtraq: Facebook BB #18 – IDOR Issue & Privacy Vulnerability
Facebook BB #18 – IDOR Issue & Privacy Vulnerability
Bugtraq: TWiki Security Advisory – XSS Vulnerability – CVE-2014-9325
TWiki Security Advisory – XSS Vulnerability – CVE-2014-9325
Bugtraq: TWiki Security Advisory – XSS Vulnerability – CVE-2014-9367
TWiki Security Advisory – XSS Vulnerability – CVE-2014-9367
Fedora 19 Security Update: libssh-0.6.4-1.fc19
Fedora 20 Security Update: ntp-4.2.6p5-19.fc20
Resolved Bugs
1176191 – CVE-2014-9296 CVE-2014-9294 CVE-2014-9295 CVE-2014-9293 ntp: various flaws [fedora-all]
1176032 – CVE-2014-9293 ntp: automatic generation of weak default key in config_auth()
1176035 – CVE-2014-9294 ntp: ntp-keygen uses weak random number generator and seed when generating MD5 keys
1176037 – CVE-2014-9295 ntp: Multiple buffer overflows via specially-crafted packets
1176040 – CVE-2014-9296 ntp: receive() missing return on error<br
Security fix for CVE-2014-9294, CVE-2014-9295, CVE-2014-9293, CVE-2014-9296
Fedora 21 Security Update: ntp-4.2.6p5-25.fc21
Resolved Bugs
1176191 – CVE-2014-9296 CVE-2014-9294 CVE-2014-9295 CVE-2014-9293 ntp: various flaws [fedora-all]
1176032 – CVE-2014-9293 ntp: automatic generation of weak default key in config_auth()
1176035 – CVE-2014-9294 ntp: ntp-keygen uses weak random number generator and seed when generating MD5 keys
1176037 – CVE-2014-9295 ntp: Multiple buffer overflows via specially-crafted packets
1176040 – CVE-2014-9296 ntp: receive() missing return on error<br
Security fix for CVE-2014-9294, CVE-2014-9295, CVE-2014-9293, CVE-2014-9296
Fedora 21 Security Update: eclipse-jgit-3.5.3-1.fc21,eclipse-egit-3.5.3-1.fc21
Fixes for CVE-2014-9390