about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHP Session_Regenerate_ID Function Double Free Memory Corruption Vulnerability


Title PHP Session_Regenerate_ID Function Double Free Memory Corruption Vulnerability
Published 2007-03-14-12:00AM
Updated 2007-05-14-10:18PM
Class Failure to Handle Exceptional Conditions
CVE   CVE-2007-1521
Remote  No
Local  Yes
Credit  Stefan Esser is credited with the discovery of this vulnerability.
Vulnerable  Ubuntu Ubuntu Linux 7.04 sparc
Ubuntu Ubuntu Linux 7.04 powerpc
Ubuntu Ubuntu Linux 7.04 i386
Ubuntu Ubuntu Linux 7.04 amd64
Ubuntu Ubuntu Linux 6.10 sparc
Ubuntu Ubuntu Linux 6.10 powerpc
Ubuntu Ubuntu Linux 6.10 i386
Ubuntu Ubuntu Linux 6.10 amd64
Ubuntu Ubuntu Linux 6.06 LTS sparc
Ubuntu Ubuntu Linux 6.06 LTS powerpc
Ubuntu Ubuntu Linux 6.06 LTS i386
Ubuntu Ubuntu Linux 6.06 LTS amd64
PHP PHP 5.2.1
PHP PHP 5.1.6
PHP PHP 5.1.5
PHP PHP 5.1.4
PHP PHP 5.1.3
PHP PHP 5.1.3
PHP PHP 5.1.2
PHP PHP 5.1.1
PHP PHP 5.1
PHP PHP 5.0.5
PHP PHP 5.0.4
PHP PHP 5.0.3
Trustix Secure Linux 2.2
PHP PHP 5.0.2
PHP PHP 5.0.1
PHP PHP 5.0 candidate 3
PHP PHP 5.0 candidate 2
PHP PHP 5.0 candidate 1
PHP PHP 5.0 .0
PHP PHP 5.2
Debian Linux 3.1 sparc
Debian Linux 3.1 s/390
Debian Linux 3.1 ppc
Debian Linux 3.1 mipsel
Debian Linux 3.1 mips
Debian Linux 3.1 m68k
Debian Linux 3.1 ia64
Debian Linux 3.1 ia32
Debian Linux 3.1 hppa
Debian Linux 3.1 arm
Debian Linux 3.1 amd64
Debian Linux 3.1 alpha
Debian Linux 3.1
Debian Linux 4.0 sparc
Debian Linux 4.0 s/390
Debian Linux 4.0 powerpc
Debian Linux 4.0 mipsel
Debian Linux 4.0 mips
Debian Linux 4.0 m68k
Debian Linux 4.0 ia64
Debian Linux 4.0 ia32
Debian Linux 4.0 hppa
Debian Linux 4.0 arm
Debian Linux 4.0 amd64
Debian Linux 4.0 alpha
Debian Linux 4.0
Not Vulnerable  PHP PHP 5.2.2
PHP PHP 4.4.7
-
Slackware Linux 10.2
-
Slackware Linux 11.0
-
Slackware Linux -current
Code   The following proof of concept is available: /data/vulnerabilities/exploits/22968.php
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 21:46:12 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.89six. Name WWW.sexey webchat t280t www.xnnx.c t104t sex teen v news for c try.c SQL%20in%2 www airte www.pr4.co PORN PICTU Wap.phonEr www sexy a human anim open ssh 4 SEX GIRL N nettos.co. php-nuke 2 all cartoo WWW.bokeb news for C Sex imeg Fuk+girl nude photo news for c t389t cisco pix t511t xp/exploit WWW.bokeb t511t good sixe Www . wor port 1110 videos de ventrilo 2 WWW.bokeb +Www.world ventrilo 2 wWW.Arab.j nicki sooh bunnyteens dora sexba.com PHP 5.2.4 xxx yideo Crack Data