Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

DNS:PHP-PARSERR-HEAP-BO

Severity

Major

Recommended

No

Category

DNS

Keywords

PHP php_parserr DNS_TXT Heap Buffer Overflow

Release Date

2014/08/10

Update Number

2407

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

DNS: PHP php_parserr DNS_TXT Heap Buffer Overflow


This signature detects attempts to exploit a known vulnerability in the PHP php_parserr. A successful attack can lead to a arbitrary code execution.

Extended Description

Heap-based buffer overflow in the php_parserr function in ext/standard/dns.c in PHP 5.6.0beta4 and earlier allows remote servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DNS TXT record, related to the dns_get_record function.

Affected Products

  • Opensuse opensuse 11.3
  • Php php 5.6.0

References

  • BugTraq: 68007
  • CVE: CVE-2014-4049

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out