info
discussion
exploit
solution
references
PHP Hash Table Overwrite Arbitrary Code Execution Vulnerability
Solution:
Fixes have been released to address this issue. Please see the references for more information.
HP Systems Management HomePage 2.1.7.168
HP HP System Management Homepage for Linux
http://h18023.www1.hp.com/support/files/server/us/download/26864.html
HP HP System Management Homepage for Linux (AMD64/EM64T)
http://h18023.www1.hp.com/support/files/server/us/download/26866.html
HP HP System Management Homepage for Windows
http://h18023.www1.hp.com/support/files/server/us/download/26977.html
PHP PHP 5.1.6
Ubuntu libapache2-mod-php5_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/libapache2-mod-php5 _5.1.6-1ubuntu2.4_amd64.deb
Ubuntu libapache2-mod-php5_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/libapache2-mod-php5 _5.1.6-1ubuntu2.4_i386.deb
Ubuntu libapache2-mod-php5_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/libapache2-mod-php5 _5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu libapache2-mod-php5_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/libapache2-mod-php5 _5.1.6-1ubuntu2.4_sparc.deb
Ubuntu libapache2-mod-php5_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/libapache2-mod-php5 _5.2.1-0ubuntu1.1_amd64.deb
Ubuntu php-pear_5.1.6-1ubuntu2.4_all.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php-pear_5.1.6-1ubu ntu2.4_all.deb
Ubuntu php-pear_5.2.1-0ubuntu1.1_all.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php-pear_5.2.1-0ubu ntu1.1_all.deb
Ubuntu php5-cgi_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cgi_5.1.6-1ubu ntu2.4_amd64.deb
Ubuntu php5-cgi_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cgi_5.1.6-1ubu ntu2.4_i386.deb
Ubuntu php5-cgi_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cgi_5.1.6-1ubu ntu2.4_powerpc.deb
Ubuntu php5-cgi_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cgi_5.1.6-1ubu ntu2.4_sparc.deb
Ubuntu php5-cgi_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cgi_5.2.1-0ubu ntu1.1_amd64.deb
Ubuntu php5-cli_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cli_5.1.6-1ubu ntu2.4_amd64.deb
Ubuntu php5-cli_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cli_5.1.6-1ubu ntu2.4_i386.deb
Ubuntu php5-cli_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cli_5.1.6-1ubu ntu2.4_powerpc.deb
Ubuntu php5-cli_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cli_5.1.6-1ubu ntu2.4_sparc.deb
Ubuntu php5-cli_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-cli_5.2.1-0ubu ntu1.1_amd64.deb
Ubuntu php5-common_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-common_5.1.6-1 ubuntu2.4_amd64.deb
Ubuntu php5-common_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-common_5.1.6-1 ubuntu2.4_i386.deb
Ubuntu php5-common_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-common_5.1.6-1 ubuntu2.4_powerpc.deb
Ubuntu php5-common_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-common_5.1.6-1 ubuntu2.4_sparc.deb
Ubuntu php5-common_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-common_5.2.1-0 ubuntu1.1_amd64.deb
Ubuntu php5-curl_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-curl_5.1.6-1ub untu2.4_amd64.deb
Ubuntu php5-curl_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-curl_5.1.6-1ub untu2.4_i386.deb
Ubuntu php5-curl_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-curl_5.1.6-1ub untu2.4_powerpc.deb
Ubuntu php5-curl_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-curl_5.1.6-1ub untu2.4_sparc.deb
Ubuntu php5-curl_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-curl_5.2.1-0ub untu1.1_amd64.deb
Ubuntu php5-dev_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-dev_5.1.6-1ubu ntu2.4_amd64.deb
Ubuntu php5-dev_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-dev_5.1.6-1ubu ntu2.4_i386.deb
Ubuntu php5-dev_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-dev_5.1.6-1ubu ntu2.4_powerpc.deb
Ubuntu php5-dev_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-dev_5.1.6-1ubu ntu2.4_sparc.deb
Ubuntu php5-dev_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-dev_5.2.1-0ubu ntu1.1_amd64.deb
Ubuntu php5-gd_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-gd_5.1.6-1ubun tu2.4_amd64.deb
Ubuntu php5-gd_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-gd_5.1.6-1ubun tu2.4_i386.deb
Ubuntu php5-gd_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-gd_5.1.6-1ubun tu2.4_powerpc.deb
Ubuntu php5-gd_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-gd_5.1.6-1ubun tu2.4_sparc.deb
Ubuntu php5-gd_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-gd_5.2.1-0ubun tu1.1_amd64.deb
Ubuntu php5-ldap_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-ldap_5.1.6-1ub untu2.4_amd64.deb
Ubuntu php5-ldap_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-ldap_5.1.6-1ub untu2.4_i386.deb
Ubuntu php5-ldap_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-ldap_5.1.6-1ub untu2.4_powerpc.deb
Ubuntu php5-ldap_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-ldap_5.1.6-1ub untu2.4_sparc.deb
Ubuntu php5-ldap_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-ldap_5.2.1-0ub untu1.1_amd64.deb
Ubuntu php5-mhash_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mhash_5.1.6-1u buntu2.4_amd64.deb
Ubuntu php5-mhash_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mhash_5.1.6-1u buntu2.4_i386.deb
Ubuntu php5-mhash_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mhash_5.1.6-1u buntu2.4_powerpc.deb
Ubuntu php5-mhash_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mhash_5.1.6-1u buntu2.4_sparc.deb
Ubuntu php5-mhash_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mhash_5.2.1-0u buntu1.1_amd64.deb
Ubuntu php5-mysql_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysql_5.1.6-1u buntu2.4_amd64.deb
Ubuntu php5-mysql_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysql_5.1.6-1u buntu2.4_i386.deb
Ubuntu php5-mysql_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysql_5.1.6-1u buntu2.4_powerpc.deb
Ubuntu php5-mysql_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysql_5.1.6-1u buntu2.4_sparc.deb
Ubuntu php5-mysql_5.2.1-0ubuntu1.1_amd64.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysql_5.2.1-0u buntu1.1_amd64.deb
Ubuntu php5-mysqli_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysqli_5.1.6-1 ubuntu2.4_amd64.deb
Ubuntu php5-mysqli_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysqli_5.1.6-1 ubuntu2.4_i386.deb
Ubuntu php5-mysqli_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysqli_5.1.6-1 ubuntu2.4_powerpc.deb
Ubuntu php5-mysqli_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-mysqli_5.1.6-1 ubuntu2.4_sparc.deb
Ubuntu php5-odbc_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-odbc_5.1.6-1ub untu2.4_amd64.deb
Ubuntu php5-odbc_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-odbc_5.1.6-1ub untu2.4_i386.deb
Ubuntu php5-odbc_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-odbc_5.1.6-1ub untu2.4_powerpc.deb
Ubuntu php5-odbc_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-odbc_5.1.6-1ub untu2.4_sparc.deb
Ubuntu php5-pgsql_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-pgsql_5.1.6-1u buntu2.4_amd64.deb
Ubuntu php5-pgsql_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-pgsql_5.1.6-1u buntu2.4_i386.deb
Ubuntu php5-pgsql_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-pgsql_5.1.6-1u buntu2.4_powerpc.deb
Ubuntu php5-pgsql_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-pgsql_5.1.6-1u buntu2.4_sparc.deb
Ubuntu php5-recode_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-recode_5.1.6-1 ubuntu2.4_amd64.deb
Ubuntu php5-recode_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-recode_5.1.6-1 ubuntu2.4_i386.deb
Ubuntu php5-recode_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-recode_5.1.6-1 ubuntu2.4_powerpc.deb
Ubuntu php5-recode_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-recode_5.1.6-1 ubuntu2.4_sparc.deb
Ubuntu php5-snmp_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-snmp_5.1.6-1ub untu2.4_amd64.deb
Ubuntu php5-snmp_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-snmp_5.1.6-1ub untu2.4_i386.deb
Ubuntu php5-snmp_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-snmp_5.1.6-1ub untu2.4_powerpc.deb
Ubuntu php5-snmp_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-snmp_5.1.6-1ub untu2.4_sparc.deb
Ubuntu php5-sqlite_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sqlite_5.1.6-1 ubuntu2.4_amd64.deb
Ubuntu php5-sqlite_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sqlite_5.1.6-1 ubuntu2.4_i386.deb
Ubuntu php5-sqlite_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sqlite_5.1.6-1 ubuntu2.4_powerpc.deb
Ubuntu php5-sqlite_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sqlite_5.1.6-1 ubuntu2.4_sparc.deb
Ubuntu php5-sybase_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sybase_5.1.6-1 ubuntu2.4_amd64.deb
Ubuntu php5-sybase_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sybase_5.1.6-1 ubuntu2.4_i386.deb
Ubuntu php5-sybase_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sybase_5.1.6-1 ubuntu2.4_powerpc.deb
Ubuntu php5-sybase_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-sybase_5.1.6-1 ubuntu2.4_sparc.deb
Ubuntu php5-xmlrpc_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xmlrpc_5.1.6-1 ubuntu2.4_amd64.deb
Ubuntu php5-xmlrpc_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xmlrpc_5.1.6-1 ubuntu2.4_i386.deb
Ubuntu php5-xmlrpc_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xmlrpc_5.1.6-1 ubuntu2.4_powerpc.deb
Ubuntu php5-xmlrpc_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xmlrpc_5.1.6-1 ubuntu2.4_sparc.deb
Ubuntu php5-xsl_5.1.6-1ubuntu2.4_amd64.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xsl_5.1.6-1ubu ntu2.4_amd64.deb
Ubuntu php5-xsl_5.1.6-1ubuntu2.4_i386.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xsl_5.1.6-1ubu ntu2.4_i386.deb
Ubuntu php5-xsl_5.1.6-1ubuntu2.4_powerpc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xsl_5.1.6-1ubu ntu2.4_powerpc.deb
Ubuntu php5-xsl_5.1.6-1ubuntu2.4_sparc.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5-xsl_5.1.6-1ubu ntu2.4_sparc.deb
Ubuntu php5_5.1.6-1ubuntu2.4_all.deb
Ubuntu 6.10:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5_5.1.6-1ubuntu2 .4_all.deb
Ubuntu php5_5.2.1-0ubuntu1.1_all.deb
Ubuntu 7.04:
http://security.ubuntu.com/ubuntu/pool/main/p/php5/php5_5.2.1-0ubuntu1 .1_all.deb
Privacy Statement
Copyright 2010, SecurityFocus