CVE-2013-6712
published 2013-11-28CVE-2013-6712: The scan function in ext/date/lib/parse_iso_intervals.c in PHP through 5.5.6 does not properly restrict creation of DateInterval objects, which might allow…
PriorityP428medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
4.58%
90.6th percentile
The scan function in ext/date/lib/parse_iso_intervals.c in PHP through 5.5.6 does not properly restrict creation of DateInterval objects, which might allow remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted interval specification.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | <= 10.10.2 | — |
| apple | os_x_yosemite_v10.10.3_and_security_update_2015-004 | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| php | php | < 5.3.29 | 5.3.29 |
| php | php | >= 5.4.0 < 5.4.24 | 5.4.24 |
| php | php | >= 5.5.0 < 5.5.8 | 5.5.8 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_ubuntu7.5HIGH
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
PHP vulnerabilities
vendor_ubuntu·2013-12-12·CVSS 7.5
CVE-2013-6420 [HIGH] PHP vulnerabilities
Title: PHP vulnerabilities
Summary: Several security issues were fixed in PHP.
Stefan Esser discovered that PHP incorrectly parsed certificates. An
attacker could use a malformed certificate to cause PHP to crash, resulting
in a denial of service, or possibly execute arbitrary code. (CVE-2013-6420)
It was discovered that PHP incorrectly handled DateInterval objects. An
attacker could use this issue to cause PHP to crash, resulting in a denial
of service. (CVE-2013-6712)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
php: heap-based buffer over-read in DateInterval
vendor_redhat·2013-11-27·CVSS 5.0
CVE-2013-6712 [MEDIUM] CWE-122 php: heap-based buffer over-read in DateInterval
php: heap-based buffer over-read in DateInterval
The scan function in ext/date/lib/parse_iso_intervals.c in PHP through 5.5.6 does not properly restrict creation of DateInterval objects, which might allow remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted interval specification.
A buffer over-read flaw was found in the way the DateInterval class parsed interval specifications. An attacker able to make a PHP application parse a specially crafted specification using DateInterval could possibly cause the PHP interpreter to crash.
Statement: This issue did not affect the php packages as shipped with Red Hat Enterprise Linux 5. This issue did not affect the php packages as shipped with Red Hat Enterprise Linux 7.
Package: php (Red Hat Enterprise Linux
Apple
CVE-2013-6712: OS X Yosemite v10.10.3 and Security Update 2015-004
vendor_apple·CVSS 5.0
CVE-2013-6712 [MEDIUM] CVE-2013-6712: OS X Yosemite v10.10.3 and Security Update 2015-004
Apple Security Update: About the security content of OS X Yosemite v10.10.3 and Security Update 2015-004
Product: OS X Yosemite v10.10.3 and Security Update 2015-004
CVE: CVE-2013-6712
Component: CVE-2013-6712
GHSA
GHSA-mfq9-hf75-jqcg: The scan function in ext/date/lib/parse_iso_intervals
ghsa_unreviewed·2022-05-14
CVE-2013-6712 [MEDIUM] CWE-119 GHSA-mfq9-hf75-jqcg: The scan function in ext/date/lib/parse_iso_intervals
The scan function in ext/date/lib/parse_iso_intervals.c in PHP through 5.5.6 does not properly restrict creation of DateInterval objects, which might allow remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted interval specification.
No detection rules found.
No public exploits indexed.
http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=12fe4e90be7bfa2a763197079f68f5568a14e071http://lists.apple.com/archives/security-announce/2015/Apr/msg00001.htmlhttp://lists.opensuse.org/opensuse-updates/2013-12/msg00125.htmlhttp://lists.opensuse.org/opensuse-updates/2013-12/msg00126.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1765.htmlhttp://www.debian.org/security/2013/dsa-2816http://www.ubuntu.com/usn/USN-2055-1https://bugs.php.net/bug.php?id=66060https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04463322https://support.apple.com/HT204659http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=12fe4e90be7bfa2a763197079f68f5568a14e071http://lists.apple.com/archives/security-announce/2015/Apr/msg00001.htmlhttp://lists.opensuse.org/opensuse-updates/2013-12/msg00125.htmlhttp://lists.opensuse.org/opensuse-updates/2013-12/msg00126.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1765.htmlhttp://www.debian.org/security/2013/dsa-2816http://www.ubuntu.com/usn/USN-2055-1https://bugs.php.net/bug.php?id=66060https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04463322https://support.apple.com/HT204659
2013-11-28
Published