APPLE-SA-2016-05-16-4Vendor advisory
http://lists.apple.com/archives/security-announce/2016/May/msg00004.html CVE-2016-4071
CRITICAL
PHP 5.5.33/7.0.4 - SNMP Format String
Record summary
CVE-2016-4071 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
Format string vulnerability in the php_snmp_error function in ext/snmp/snmp.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via format string specifiers in an SNMP::get call.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPHP 5.5.33/7.0.4 - SNMP Format StringExploitDB exploitby Andrew KramerNot analyzed1 file
References
Showing 12 of 22openSUSE-SU-2016:1274Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00031.html SUSE-SU-2016:1277Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00033.html openSUSE-SU-2016:1373Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00056.html RHSA-2016:2750Vendor advisory
http://rhn.redhat.com/errata/RHSA-2016-2750.html DSA-3560Vendor advisory
http://www.debian.org/security/2016/dsa-3560 [oss-security] 20160423 Re: CVE request: PHP issues fixed in 7.0.5, 5.6.20 and 5.5.34 releasesmailing list
http://www.openwall.com/lists/oss-security/2016/04/24/1 php.netConfirmation
http://www.php.net/ChangeLog-5.php php.netConfirmation
http://www.php.net/ChangeLog-7.php 85800vdb entry
http://www.securityfocus.com/bid/85800 USN-2952-1Vendor advisory
http://www.ubuntu.com/usn/USN-2952-1 USN-2952-2Vendor advisory
http://www.ubuntu.com/usn/USN-2952-2