Known vulnerabilities in php5 (Ubuntu package) - page 4

Software CPE: cpe:2.3:o:canonical:php5_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Total vulnerabilities: 97
Public exploits: 11
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting php5 (Ubuntu package) php5 (Ubuntu package) is affected by 97 known vulnerabilities: 2 critical, 28 high, 1 medium, 66 low Critical High Medium Low

Vulnerabilities (97)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU16125 - Type confusion
CVE-2015-4600
CWE-843 High
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015071705
#VU16123 - Type confusion
CVE-2015-4148
CWE-843 Low
Available
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015071705
#VU16122 - Resource exhaustion
CVE-2015-4024
CWE-400 Low
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015060301
SB2015060304
and 4 more
#VU16121 - Permissions, Privileges, and Access Controls
CVE-2015-4643
CWE-264 High
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015071705
#VU16120 - Integer overflow
CVE-2015-4022
CWE-190 High
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015060301
SB2015060304
and 4 more
#VU16118 - Permissions, Privileges, and Access Controls
CVE-2015-4598
CWE-264 Low
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015071705
#VU16117 - Permissions, Privileges, and Access Controls
CVE-2015-4026
CWE-264 Low
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 27.11.2018 SB2015070601
SB2015060301
SB2015060304
and 4 more
#VU16114 - Buffer over-read
CVE-2015-2783
CWE-126 Low
No
No
5.3.2-1ubuntu4.30, 5.3.10-1ubuntu3.18, 5.5.9+dfsg-1ubuntu4.9, 5.5.12+dfsg-2ubuntu4.4 27.11.2018 SB2015042001
SB2015041703
SB2015042204
and 2 more
#VU16113 - Use After Free
CVE-2015-2787
CWE-416 High
No
No
5.3.2-1ubuntu4.30, 5.3.10-1ubuntu3.18, 5.5.9+dfsg-1ubuntu4.9, 5.5.12+dfsg-2ubuntu4.4 27.11.2018 SB2015042001
#VU16111 - Permissions, Privileges, and Access Controls
CVE-2015-2348
CWE-264 Low
No
No
5.3.2-1ubuntu4.30, 5.3.10-1ubuntu3.18, 5.5.9+dfsg-1ubuntu4.9, 5.5.12+dfsg-2ubuntu4.4 27.11.2018 SB2015042001
#VU16110 - Integer overflow
CVE-2015-2305
CWE-190 Low
No
No
5.3.2-1ubuntu4.30, 5.3.10-1ubuntu3.18, 5.5.9+dfsg-1ubuntu4.9, 5.5.12+dfsg-2ubuntu4.4 27.11.2018 SB2015042001
SB2015051402
SB2015041609
and 5 more
#VU16109 - Stack-based buffer overflow
CVE-2015-3329
CWE-121 High
No
No
5.3.2-1ubuntu4.30, 5.3.10-1ubuntu3.18, 5.5.9+dfsg-1ubuntu4.9, 5.5.12+dfsg-2ubuntu4.4 27.11.2018 SB2015042001
SB2015041701
SB2015041702
and 3 more
#VU16086 - Heap-based Buffer Overflow
CVE-2014-4049
CWE-122 High
No
No
5.3.2-1ubuntu4.25, 5.3.10-1ubuntu3.12 27.11.2018 SB2015062304
SB2014062308
SB2014070709
and 9 more
#VU16085 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2014-0238
CWE-835 Low
No
No
5.3.2-1ubuntu4.25, 5.3.10-1ubuntu3.12 27.11.2018 SB2015062304
SB2014061501
SB2014061502
and 6 more
#VU16084 - Permissions, Privileges, and Access Controls
CVE-2014-0237
CWE-264 Low
No
No
5.3.2-1ubuntu4.25, 5.3.10-1ubuntu3.12 27.11.2018 SB2015062304
SB2014061501
SB2014061502
and 6 more
#VU16083 - Permissions, Privileges, and Access Controls
CVE-2014-0185
CWE-264 Low
No
No
5.3.2-1ubuntu4.25, 5.3.10-1ubuntu3.12 27.11.2018 SB2015062304
SB2014061001
SB2014052805
and 1 more
#VU5939 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2012-2311
CWE-78 Critical
Available
No
5.3.2-1ubuntu4.15, 5.3.10-1ubuntu3.1 14.03.2017 SB2012050601
SB2015050401
SB2012050701
and 5 more
#VU4201 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2012-1823
CWE-78 Critical
Available
Exploited
5.3.2-1ubuntu4.15, 5.3.10-1ubuntu3.1 11.01.2017 SB2012050301
SB2015050401
SB2012050901
and 11 more
#VU2556 - Type confusion
CVE-2015-4147
CWE-843 High
No
No
5.3.10-1ubuntu3.19, 5.5.9+dfsg-1ubuntu4.11, 5.5.12+dfsg-2ubuntu4.6, 5.6.4+dfsg-4ubuntu6.2 21.12.2016 SB2015070601
#VU2555 - Improper input validation
CVE-2015-3330
CWE-20 Low
No
No
5.3.2-1ubuntu4.30, 5.3.10-1ubuntu3.18, 5.5.9+dfsg-1ubuntu4.9, 5.5.12+dfsg-2ubuntu4.4 21.12.2016 SB2015042001
SB2015042204


Showing elements 61 - 80 out of 97