Vulnerability Description
The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to "type confusion" issues in (1) ArrayObject and (2) SPLObjectStorage.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Php | Php | < 5.3.29 |
| Debian | Debian Linux | 7.0 |
References
- http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=88223c5245e9b470e1e6362bfd96829
- http://lists.opensuse.org/opensuse-updates/2014-09/msg00046.htmlMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=141017844705317&w=2Mailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1765.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1766.htmlThird Party Advisory
- http://secunia.com/advisories/59794Third Party Advisory
- http://secunia.com/advisories/59831Third Party Advisory
- http://secunia.com/advisories/60998Third Party Advisory
- http://support.apple.com/kb/HT6443Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21683486Third Party Advisory
- http://www.debian.org/security/2014/dsa-2974Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.htmlThird Party Advisory
- http://www.php.net/ChangeLog-5.phpVendor Advisory
- http://www.securityfocus.com/bid/68237Third Party AdvisoryVDB Entry
- https://bugs.php.net/bug.php?id=67492PatchVendor Advisory
FAQ
What is CVE-2014-3515?
CVE-2014-3515 is a vulnerability with a CVSS score of 7.5 (HIGH). The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers t...
How severe is CVE-2014-3515?
CVE-2014-3515 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-3515?
Check the references section above for vendor advisories and patch information. Affected products include: Php Php, Debian Debian Linux.