int(5338)

Vulnerability Bulletins


Múltiples vulnerabilidades en HP-UX bajo Apache con PHP

Vulnerability classification

Property Value
Confidence level Oficial
Impact Aumento de privilegios
Dificulty Experto
Required attacker level Acceso remoto sin cuenta a un servicio estandar

System information

Property Value
Affected manufacturer Comercial Software
Affected software PHP < 5.2.12
PHP 5.3.x < 5.3.1

Description

Se han descubierto múltiples vulnerabilidades en HP-UX B.11.11, B.11.23 y B.11.31 corriendo bajo Apache con PHP v5.2.6 y anteriores. Las vulnerabilidades son descritas a continuación:

- CVE-2009-3557: La vulnerabilidad reside en un error en la función "tempnam" del fichero "ext/standard/file.c". Un atacante remoto podría saltarse restricciones de seguridad safe_mode mediante la manipulacion de los argumentos dir y prefix.

- CVE-2009-4018: La vulnerabilidad reside en un error en la función "proc_open" del fichero "ext/standard/proc_open.c". Un atacante remoto podría ejecutar programas en un entorno arbitrario mediante la manipulación del parámetro env.

Solution



Actualización de software

Hewlett-Packard (HPSBUX02543)
HP-UX Web Server Suite v.3.10
HP-UX Web Server Suite v.2.31
http://support.openview.hp.com/selfsolve/patches

Standar resources

Property Value
CVE CVE-2009-3557
CVE-2009-4018
BID 37138

Other resources

HP SECURITY BULLETIN (HPSBUX02543)
https://www11.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02247738

Version history

Version Comments Date
1.0 Aviso emitido 2010-06-17