← Back

CVE-2004-1019

nvd nist
Published: Jan 10, 2005Modified: Apr 16, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbitrary code via untrusted data to the unserialize function that may trigger "information disclosure, double-free and negative reference index array underflow" results.

Affected (65)

Products: Openpkg: Openpkg · Php: Php · Trustix: Secure Linux · +1 more
Show all products
1 product
Openpkg
1 product
Php
1 product
Secure Linux
1 product
Ubuntu Linux
Configuration A
60 vulnerable
Vulnerable SoftwareAffected Versions
Openpkg
Version 2.1
Version 2.2
Version current
Php
Version 3.0.10
Version 3.0.11
Version 3.0.12
Version 3.0.13
Version 3.0.14
Version 3.0.15
Version 3.0.16
Version 3.0.17
Version 3.0.18
Version 3.0.1
Version 3.0.2
Version 3.0.3
Version 3.0.4
Version 3.0.5
Version 3.0.6
Version 3.0.7
Version 3.0.8
Version 3.0.9
Version 3.0
Version 4.0.1
Version 4.0.1 patch1
Version 4.0.1 patch2
Version 4.0.2
Version 4.0.3
Version 4.0.3 patch1
Version 4.0.4
Version 4.0.5
Version 4.0.6
Version 4.0.7
Version 4.0.7 rc1
Version 4.0.7 rc2
Version 4.0.7 rc3
Version 4.0
Version 4.1.0
Version 4.1.1
Version 4.1.2
Version 4.2.0
Version 4.2.1
Version 4.2.2
Version 4.2.3
Version 4.2
Version 4.3.0
Version 4.3.1
Version 4.3.2
Version 4.3.3
Version 4.3.4
Version 4.3.5
Version 4.3.6
Version 4.3.7
Version 4.3.8
Version 4.3.9
Version 5.0.0
Version 5.0.1
Version 5.0.2
Version 5.0 rc1
Version 5.0 rc2
Version 5.0 rc3
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
Trustix
Version 2.0
Version 2.1
Version 2.2
Ubuntu
Version 4.1
Version 4.1

References (32)

Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.