Risk | High |
Patch available | YES |
Number of vulnerabilities | 4 |
CVE-ID | CVE-2014-3668 CVE-2014-3669 CVE-2014-3670 CVE-2014-3710 |
CWE-ID | CWE-119 CWE-190 CWE-122 CWE-125 |
Exploitation vector | Network |
Public exploit | N/A |
Vulnerable software |
Red Hat Enterprise Linux EUS Compute Node Operating systems & Components / Operating system Red Hat Enterprise Linux for Scientific Computing Operating systems & Components / Operating system Red Hat Enterprise Linux for IBM z Systems Operating systems & Components / Operating system Red Hat Enterprise Linux Desktop Operating systems & Components / Operating system Red Hat Enterprise Linux Workstation Operating systems & Components / Operating system Red Hat Enterprise Linux Server Operating systems & Components / Operating system |
Vendor | Red Hat Inc. |
Security Bulletin
This security bulletin contains information about 4 vulnerabilities.
EUVDB-ID: #VU16097
Risk: Low
CVSSv4.0: 6.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID: CVE-2014-3668
CWE-ID:
CWE-119 - Memory corruption
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2. A remote attacker can trigger memory corruption via a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation and cause the service to crash.
MitigationInstall updates from vendor's website.
Red Hat Enterprise Linux EUS Compute Node: 7.3
Red Hat Enterprise Linux for Scientific Computing: 6 - 7
Red Hat Enterprise Linux for IBM z Systems: 6 - 7
Red Hat Enterprise Linux Desktop: 6 - 7
Red Hat Enterprise Linux Workstation: 6 - 7
Red Hat Enterprise Linux Server: 6.0 - 7
CPE2.3https://access.redhat.com/errata/RHSA-2014:1767
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU16098
Risk: High
CVSSv4.0: 8.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2014-3669
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to cause DoS condition or execute arbitrary code on the target system.
The vulnerability exists due to integer overflow in the object_custom function in ext/standard/var_unserializer.c in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2. A remote attacker can trigger memory corruption via an argument to the unserialize function that triggers calculation of a large length value and cause the service to crash or execute arbitrary code.
MitigationInstall updates from vendor's website.
Red Hat Enterprise Linux EUS Compute Node: 7.3
Red Hat Enterprise Linux for Scientific Computing: 6 - 7
Red Hat Enterprise Linux for IBM z Systems: 6 - 7
Red Hat Enterprise Linux Desktop: 6 - 7
Red Hat Enterprise Linux Workstation: 6 - 7
Red Hat Enterprise Linux Server: 6.0 - 7
CPE2.3https://access.redhat.com/errata/RHSA-2014:1767
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU16099
Risk: High
CVSSv4.0: 8.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2014-3670
CWE-ID:
CWE-122 - Heap-based Buffer Overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to heap-based buffer overflow when exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point arrays incorrectly. A remote attacker can trigger memory corruption via a crafted JPEG image with TIFF thumbnail data that is improperly handled by the exif_thumbnail function and cause the application to crash or execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationInstall updates from vendor's website.
Red Hat Enterprise Linux EUS Compute Node: 7.3
Red Hat Enterprise Linux for Scientific Computing: 6 - 7
Red Hat Enterprise Linux for IBM z Systems: 6 - 7
Red Hat Enterprise Linux Desktop: 6 - 7
Red Hat Enterprise Linux Workstation: 6 - 7
Red Hat Enterprise Linux Server: 6.0 - 7
CPE2.3https://access.redhat.com/errata/RHSA-2014:1767
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU3892
Risk: Low
CVSSv4.0: 6.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID: CVE-2014-3710
CWE-ID:
CWE-125 - Out-of-bounds read
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to cause DoS condition on the target system.
The weakness exists due to the donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present. A remote attacker can trigger out-of-bounds read and cause the application to crash via a crafted ELF file.
Install updates from vendor's website.
Red Hat Enterprise Linux EUS Compute Node: 7.3
Red Hat Enterprise Linux for Scientific Computing: 6 - 7
Red Hat Enterprise Linux for IBM z Systems: 6 - 7
Red Hat Enterprise Linux Desktop: 6 - 7
Red Hat Enterprise Linux Workstation: 6 - 7
Red Hat Enterprise Linux Server: 6.0 - 7
CPE2.3https://access.redhat.com/errata/RHSA-2014:1767
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.