CVE-2012-2317P4MEDIUMCVSS 4.3≤ 5.3.2-1ubuntu4.16·v5.3.2-1ubuntu4.17+2 more2012-08-07
CVE-2012-2317 [MEDIUM] CWE-310 CVE-2012-2317: The Debian php_crypt_revamped.patch patch for PHP 5.3.x, as used in the php5 package before 5.3.3-7+
The Debian php_crypt_revamped.patch patch for PHP 5.3.x, as used in the php5 package before 5.3.3-7+squeeze4 in Debian GNU/Linux squeeze, the php5 package before 5.3.2-1ubuntu4.17 in Ubuntu 10.04 LTS, and the php5 package before 5.3.5-1ubuntu7.10 in Ubuntu 11.04, does not properly handle an empty salt string, which might allow remote attackers to bypa
nvd