7.5
CVSSv2

CVE-2014-9705

Published: 30/03/2015 Updated: 05/01/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in the enchant_broker_request_dict function in ext/enchant/enchant.c in PHP prior to 5.4.38, 5.5.x prior to 5.5.22, and 5.6.x prior to 5.6.6 allows remote malicious users to execute arbitrary code via vectors that trigger creation of multiple dictionaries.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

php php 5.5.0

php php 5.5.13

php php 5.5.14

php php 5.5.20

php php 5.5.21

php php 5.6.0

php php 5.6.1

php php 5.5.1

php php 5.5.10

php php 5.5.17

php php 5.5.18

php php 5.5.5

php php 5.5.6

php php 5.6.4

php php 5.6.5

php php 5.5.15

php php 5.5.16

php php 5.5.3

php php 5.5.4

php php 5.6.2

php php 5.6.3

php php

php php 5.5.11

php php 5.5.12

php php 5.5.19

php php 5.5.2

php php 5.5.7

php php 5.5.8

php php 5.5.9

Vendor Advisories

Several security issues were fixed in PHP ...