CVE Vulnerabilities

CVE-2005-4154

Published: Dec 11, 2005 | Modified: Jan 23, 2020
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in PEAR installer 1.4.2 and earlier allows user-assisted attackers to execute arbitrary code via a crafted package that can execute code when the pear command is executed or when the Web/Gtk frontend is loaded.

Affected Software

Name Vendor Start Version End Version
Pear Php * 1.4.2 (including)
Pear Php 0.9 (including) 0.9 (including)
Pear Php 0.10 (including) 0.10 (including)
Pear Php 0.11 (including) 0.11 (including)
Pear Php 0.90 (including) 0.90 (including)
Pear Php 1.0 (including) 1.0 (including)
Pear Php 1.0.1 (including) 1.0.1 (including)
Pear Php 1.1 (including) 1.1 (including)
Pear Php 1.2 (including) 1.2 (including)
Pear Php 1.2.1 (including) 1.2.1 (including)
Pear Php 1.3 (including) 1.3 (including)
Pear Php 1.3.1 (including) 1.3.1 (including)
Pear Php 1.3.3 (including) 1.3.3 (including)
Pear Php 1.3.3.1 (including) 1.3.3.1 (including)
Pear Php 1.3.4 (including) 1.3.4 (including)
Pear Php 1.3.5 (including) 1.3.5 (including)
Pear Php 1.3.6 (including) 1.3.6 (including)
Pear Php 1.4.0 (including) 1.4.0 (including)
Pear Php 1.4.0-rc1 (including) 1.4.0-rc1 (including)
Pear Php 1.4.0-rc2 (including) 1.4.0-rc2 (including)
Pear Php 1.4.1 (including) 1.4.1 (including)

References