CVE Vulnerabilities

CVE-2015-8876

Published: May 22, 2016 | Modified: Apr 12, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
5.1 MODERATE
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Zend/zend_exceptions.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 does not validate certain Exception objects, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or trigger unintended method execution via crafted serialized data.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp5.4.0 (including)5.4.44 (excluding)
PhpPhp5.5.0 (including)5.5.28 (excluding)
PhpPhp5.6.0 (including)5.6.12 (excluding)
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatrh-php56-0:2.3-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatrh-php56-php-0:5.6.25-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatrh-php56-php-pear-1:1.9.5-4.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUSRedHatrh-php56-0:2.3-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUSRedHatrh-php56-php-0:5.6.25-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6.7 EUSRedHatrh-php56-php-pear-1:1.9.5-4.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-php56-0:2.3-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-php56-php-0:5.6.25-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-php56-php-pear-1:1.9.5-4.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.2 EUSRedHatrh-php56-0:2.3-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.2 EUSRedHatrh-php56-php-0:5.6.25-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.2 EUSRedHatrh-php56-php-pear-1:1.9.5-4.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.3 EUSRedHatrh-php56-0:2.3-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.3 EUSRedHatrh-php56-php-0:5.6.25-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.3 EUSRedHatrh-php56-php-pear-1:1.9.5-4.el7*
Php5Ubuntuesm-infra-legacy/trusty*
Php5Ubuntuprecise*
Php5Ubuntutrusty*
Php5Ubuntutrusty/esm*
Php5Ubuntuupstream*
Php5Ubuntuwily*

References