Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-5557

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2008-5557
Last Modified 07 Mar 2011 10:14:45
Published 23 Dec 2008 01:30:03
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-5557

Summary

Heap-based buffer overflow in ext/mbstring/libmbfl/filters/mbfilter_htmlent.c in the mbstring extension in PHP 4.3.0 through 5.2.6 allows context-dependent attackers to execute arbitrary code via a crafted string containing an HTML entity, which is not properly handled during Unicode conversion, related to the (1) mb_convert_encoding, (2) mb_check_encoding, (3) mb_convert_variables, and (4) mb_parse_str functions.

Vulnerable Systems

Application

  • Php 4.3.0

  • Php 4.3.1

  • Php 4.3.10

  • Php 4.3.11

  • Php 4.3.2

  • Php 4.3.3

  • Php 4.3.4

  • Php 4.3.5

  • Php 4.3.6

  • Php 4.3.7

  • Php 4.3.8

  • Php 4.3.9

  • Php 4.4.0

  • Php 4.4.1

  • Php 4.4.2

  • Php 4.4.3

  • Php 4.4.4

  • Php 4.4.5

  • Php 4.4.6

  • Php 4.4.7

  • Php 4.4.8

  • Php 4.4.9

  • Php 5.0.0

  • Php 5.0.1

  • Php 5.0.2

  • Php 5.0.3

  • Php 5.0.4

  • Php 5.0.5

  • Php 5.1.0

  • Php 5.1.1

  • Php 5.1.2

  • Php 5.1.3

  • Php 5.1.4

  • Php 5.1.5

  • Php 5.1.6

  • Php 5.2.0

  • Php 5.2.1

  • Php 5.2.2

  • Php 5.2.3

  • Php 5.2.4

  • Php 5.2.5

  • Php 5.2.6


References

CERT - TA09-133A

FEDORA - FEDORA-2009-3848

FEDORA - FEDORA-2009-3768

XF - php-multibyte-bo(47525)

VUPEN - ADV-2009-1297

BID - 32948

BUGTRAQ - 20090302 rPSA-2009-0035-1 php php-cgi php-imap php-mcrypt php-mysql php-mysqli php-pgsql php-soap php-xsl php5 php5-cgi php5-imap php5-mcrypt php5-mysql php5-mysqli php5-pear php5-pgsql php5-soap php5-xsl

REDHAT - RHSA-2009:0350

CONFIRM - http://www.php.net/ChangeLog-5.php#5.2.7

MANDRIVA - MDVSA-2009:045

DEBIAN - DSA-1789

CONFIRM - http://wiki.rpath.com/Advisories:rPSA-2009-0035

CONFIRM - http://support.apple.com/kb/HT3549

SECTRACK - 1021482

SECUNIA - 35650

SECUNIA - 35306

SECUNIA - 35074

SECUNIA - 35003

SECUNIA - 34642

HP - SSRT090192

HP - SSRT090085

SUSE - SUSE-SR:2009:008

SUSE - SUSE-SR:2009:004

APPLE - APPLE-SA-2009-05-12

HP - HPSBMA02492

CONFIRM - http://cvs.php.net/viewvc.cgi/php-src/ext/mbstring/libmbfl/filters/mbfilter_htmlent.c?r1=1.7&r2=1.8

CONFIRM - http://bugs.php.net/bug.php?id=45722

FULLDISC - 20081221 CVE-2008-5557 - PHP mbstring buffer overflow

HP - HPSBUX02465

HP - HPSBUX02431

HP - SSRT100079

Related Patches

Apple 2009-05-12 Mac OS X 10.5.7 Combo Update

Apple 2009-05-12 Mac OS X Server 10.5.7 Update

Apple 2009-05-12 Mac OS X 10.5.7 Update

Apple 2009-05-12 Mac OS X Server 10.5.7 Combo Update

Red Hat 2009:0338-01 RHSA Moderate: php security update for RHEL 5 x86


Last Updated: 27 May 2016 10:49:59