PHP Multiple Security Vulnerabilities (CVE-2011-1938)
Publish Date: 21 lipca 2015
Severity: : High
Advisory Date: 21 lipca 2015
DESCRIPTION
Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c in PHP 5.3.3 through 5.3.6 might allow context-dependent attackers to execute arbitrary code via a long pathname for a UNIX socket.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1005428