https://access.redhat.com/security/cve/cve-2007-1285
https://access.redhat.com/security/cve/cve-2007-1286
Severity: Medium
ID: 25067
File Name: redhat-RHSA-2007-0154.nasl
Version: 1.26
Type: local
Agent: unix
Family: Red Hat Local Security Checks
Published: 4/19/2007
Updated: 1/14/2021
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: High
Score: 7.3
Risk Factor: Medium
Base Score: 6.8
Temporal Score: 5.6
Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P
CPE: p-cpe:/a:redhat:enterprise_linux:php-devel, p-cpe:/a:redhat:enterprise_linux:php-ldap, p-cpe:/a:redhat:enterprise_linux:php-manual, p-cpe:/a:redhat:enterprise_linux:php, p-cpe:/a:redhat:enterprise_linux:php-imap, p-cpe:/a:redhat:enterprise_linux:php-mysql, p-cpe:/a:redhat:enterprise_linux:php-odbc, cpe:/o:redhat:enterprise_linux:2.1, p-cpe:/a:redhat:enterprise_linux:php-pgsql
Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 4/16/2007
Vulnerability Publication Date: 3/6/2007
Metasploit (PHP 4 unserialize() ZVAL Reference Counter Overflow (Cookie))
CVE: CVE-2007-1285, CVE-2007-1286, CVE-2007-1711
RHSA: 2007:0154