PHP Multiple Security Vulnerabilities (CVE-2011-1938)
Publish Date: 21 juillet 2015
Gravité: : Élevé
Date du conseil: 21 juillet 2015
Description
Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c in PHP 5.3.3 through 5.3.6 might allow context-dependent attackers to execute arbitrary code via a long pathname for a UNIX socket.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1005428