CVE-2014-3981
08.06.2014, 18:55
acinclude.m4, as used in the configure script in PHP 5.5.13 and earlier, allows local users to overwrite arbitrary files via a symlink attack on the /tmp/phpglibccheck file.
| Vendor | Product | Version |
|---|---|---|
| php | php | 𝑥 < 5.3.29 |
| php | php | 5.4.0 ≤ 𝑥 < 5.4.30 |
| php | php | 5.5.0 ≤ 𝑥 < 5.5.14 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References