Bug 11804 - CVE-2013-6712: php - Heap buffer over-read in DateInterval
Summary: CVE-2013-6712: php - Heap buffer over-read in DateInterval
Status: RESOLVED DUPLICATE of bug 11947
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 3
Hardware: i586 Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Mageia Bug Squad
QA Contact: Sec team
URL: http://cve.mitre.org/cgi-bin/cvename....
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2013-11-28 08:49 CET by Oden Eriksson
Modified: 2013-12-12 21:13 CET (History)
0 users

See Also:
Source RPM: php
CVE:
Status comment:


Attachments

Description Oden Eriksson 2013-11-28 08:49:31 CET
Name: CVE-2013-6712
Status: Candidate
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6712
Final-Decision: 
Interim-Decision: 
Modified: 
Proposed: 
Assigned: 20131108
Category: 
Reference: MISC:https://bugs.php.net/bug.php?id=66060
Reference: CONFIRM:http://git.php.net/?p=php-src.git;a=commit;h=12fe4e90be7bfa2a763197079f68f5568a14e071

The scan function in ext/date/lib/parse_iso_intervals.c in PHP through
5.5.6 does not properly restrict creation of DateInterval objects,
which might allow remote attackers to cause a denial of service
(heap-based buffer over-read) via a crafted interval specification.


Reproducible: 

Steps to Reproduce:
Comment 1 David Walser 2013-12-12 21:13:51 CET
Moving this to Bug 11947.

*** This bug has been marked as a duplicate of bug 11947 ***

Status: NEW => RESOLVED
Resolution: (none) => DUPLICATE


Note You need to log in before you can comment on or make changes to this bug.