CVE-2014-0185
06.05.2014, 10:44
sapi/fpm/fpm/fpm_unix.c in the FastCGI Process Manager (FPM) in PHP before 5.4.28 and 5.5.x before 5.5.12 uses 0666 permissions for the UNIX socket, which allows local users to gain privileges via a crafted FastCGI client.Enginsight
Vendor | Product | Version |
---|---|---|
php | php | 5.3.0 ≤ 𝑥 < 5.3.28 |
php | php | 5.4.0 ≤ 𝑥 < 5.4.28 |
php | php | 5.5.0 ≤ 𝑥 < 5.5.12 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References