Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2014-9277

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2014-9277
Last Modified 06 Jan 2015 11:46:13
Published 04 Jan 2015 04:59:02
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2014-9277

Summary

The wfMangleFlashPolicy function in OutputHandler.php in MediaWiki before 1.19.22, 1.20.x through 1.22.x before 1.22.14, and 1.23.x before 1.23.7 allows remote attackers to conduct PHP object injection attacks via a crafted string containing in a PHP format request, which causes the string length to change when converting the request to .

Vulnerable Systems

Application

  • Mediawiki 1.19.21

  • Mediawiki 1.20

  • Mediawiki 1.20.1

  • Mediawiki 1.20.2

  • Mediawiki 1.20.3

  • Mediawiki 1.20.4

  • Mediawiki 1.20.5

  • Mediawiki 1.20.6

  • Mediawiki 1.20.7

  • Mediawiki 1.20.8

  • Mediawiki 1.21

  • Mediawiki 1.21.1

  • Mediawiki 1.21.10

  • Mediawiki 1.21.11

  • Mediawiki 1.21.2

  • Mediawiki 1.21.3

  • Mediawiki 1.21.4

  • Mediawiki 1.21.5

  • Mediawiki 1.21.6

  • Mediawiki 1.21.7

  • Mediawiki 1.21.8

  • Mediawiki 1.21.9

  • Mediawiki 1.22.0

  • Mediawiki 1.22.1

  • Mediawiki 1.22.10

  • Mediawiki 1.22.11

  • Mediawiki 1.22.12

  • Mediawiki 1.22.13

  • Mediawiki 1.22.2

  • Mediawiki 1.22.3

  • Mediawiki 1.22.4

  • Mediawiki 1.22.5

  • Mediawiki 1.22.6

  • Mediawiki 1.22.7

  • Mediawiki 1.22.8

  • Mediawiki 1.23.0

  • Mediawiki 1.23.1

  • Mediawiki 1.23.2

  • Mediawiki 1.23.3

  • Mediawiki 1.23.4

  • Mediawiki 1.23.5

  • Mediawiki 1.23.6


References

CONFIRM - https://phabricator.wikimedia.org/T73478

MLIST - [MediaWiki-announce] 20141127 MediaWiki Security and Maintenance Releases: 1.23.7, 1.22.14 and 1.19.22

MLIST - [oss-security] 20141204 Re: MediaWiki security release - 1.23.7

MLIST - [oss-security] 20141203 MediaWiki security release - 1.23.7

DEBIAN - DSA-3100

SECTRACK - 1031301


Last Updated: 27 May 2016 11:07:26