php5 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the php5 package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Use After Free

*
  • L
Improper Input Validation

*
  • M
Integer Overflow or Wraparound

*
  • M
Out-of-bounds Read

*
  • L
Resource Exhaustion

*
  • L
Improper Input Validation

*
  • M
Out-of-bounds Write

<5.3.10-1ubuntu3.24
  • L
Arbitrary Code Injection

*
  • L
Out-of-bounds Read

<5.3.10-1ubuntu3.26
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.26
  • L
Integer Overflow or Wraparound

<5.3.10-1ubuntu3.26
  • L
Numeric Errors

<5.3.10-1ubuntu3.26
  • M
Use After Free

<5.3.10-1ubuntu3.26
  • M
CVE-2016-7478

<5.3.10-1ubuntu3.26
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.26
  • M
NULL Pointer Dereference

<5.3.10-1ubuntu3.26
  • M
Out-of-bounds Read

<5.3.10-1ubuntu3.26
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.25
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.25
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.25
  • M
Improper Input Validation

<5.3.10-1ubuntu3.25
  • M
Use After Free

<5.3.10-1ubuntu3.25
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.25
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.25
  • L
Information Exposure

<5.3.10-1ubuntu3.25
  • M
NULL Pointer Dereference

<5.3.10-1ubuntu3.25
  • M
Improper Input Validation

<5.3.10-1ubuntu3.25
  • M
Out-of-bounds Write

<5.3.10-1ubuntu3.25
  • M
NULL Pointer Dereference

<5.3.10-1ubuntu3.25
  • L
Deserialization of Untrusted Data

<5.3.10-1ubuntu3.25
  • L
Arbitrary Code Injection

<5.3.10-1ubuntu3.25
  • M
NULL Pointer Dereference

<5.3.10-1ubuntu3.25
  • L
Integer Overflow or Wraparound

<5.3.10-1ubuntu3.24
  • M
Cross-site Scripting (XSS)

<5.3.10-1ubuntu3.24
  • M
Double Free

<5.3.10-1ubuntu3.24
  • L
Integer Overflow or Wraparound

<5.3.10-1ubuntu3.24
  • L
Out-of-bounds Read

<5.3.10-1ubuntu3.24
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.24
  • L
Integer Overflow or Wraparound

<5.3.10-1ubuntu3.24
  • M
Integer Overflow or Wraparound

<5.3.10-1ubuntu3.24
  • M
Use After Free

<5.3.10-1ubuntu3.24
  • M
Integer Overflow or Wraparound

<5.3.10-1ubuntu3.24
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.24
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.24
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.24
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.24
  • M
Out-of-bounds Read

<5.3.10-1ubuntu3.24
  • M
Improper Access Control

<5.3.10-1ubuntu3.24
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.23
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.23
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.23
  • M
CVE-2015-8876

<5.3.10-1ubuntu3.24
  • L
CVE-2016-4540

<5.3.10-1ubuntu3.23
  • M
Cryptographic Issues

<5.3.10-1ubuntu3.22
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.23
  • M
CVE-2016-4343

<5.3.10-1ubuntu3.23
  • L
Improper Input Validation

<5.3.10-1ubuntu3.23
  • M
CVE-2015-8866

<5.3.10-1ubuntu3.22
  • L
CVE-2016-4541

<5.3.10-1ubuntu3.23
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.23
  • L
Directory Traversal

<5.3.10-1ubuntu3.22
  • M
Improper Input Validation

<5.3.10-1ubuntu3.23
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.22
  • M
Numeric Errors

<5.3.10-1ubuntu3.22
  • M
Improper Input Validation

<5.3.10-1ubuntu3.22
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.22
  • M
CVE-2015-6834

<5.3.10-1ubuntu3.20
  • M
Information Exposure

<5.3.10-1ubuntu3.19
  • M
Improper Input Validation

<5.3.10-1ubuntu3.19
  • L
Improper Input Validation

<5.3.10-1ubuntu3.19
  • M
CVE-2015-4599

<5.3.10-1ubuntu3.19
  • L
CVE-2015-4644

<5.3.10-1ubuntu3.19
  • M
CVE-2015-4601

<5.3.10-1ubuntu3.19
  • L
CVE-2015-4116

<5.3.10-1ubuntu3.24
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.19
  • M
CVE-2015-4600

<5.3.10-1ubuntu3.19
  • M
CVE-2015-4603

<5.3.10-1ubuntu3.19
  • M
Improper Input Validation

<5.3.10-1ubuntu3.20
  • L
CVE-2015-6838

<5.3.10-1ubuntu3.20
  • M
CVE-2015-6835

<5.3.10-1ubuntu3.20
  • M
Improper Access Control

<5.3.10-1ubuntu3.22
  • L
Improper Input Validation

<5.3.10-1ubuntu3.24
  • M
CVE-2015-4602

<5.3.10-1ubuntu3.19
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.22
  • M
Improper Input Validation

<5.3.10-1ubuntu3.22
  • M
CVE-2015-8835

<5.3.10-1ubuntu3.22
  • L
CVE-2015-6837

<5.3.10-1ubuntu3.20
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.22
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.22
  • M
CVE-2015-6831

<5.3.10-1ubuntu3.20
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.20
  • M
CVE-2015-6832

<5.3.10-1ubuntu3.20
  • M
CVE-2015-6836

<5.3.10-1ubuntu3.20
  • L
Directory Traversal

<5.3.10-1ubuntu3.20
  • L
Numeric Errors

<5.3.10-1ubuntu3.21
  • M
CVE-2015-7803

<5.3.10-1ubuntu3.21
  • M
Improper Input Validation

<5.3.10-1ubuntu3.19
  • M
Improper Data Handling

<5.3.10-1ubuntu3.19
  • M
Numeric Errors

<5.3.10-1ubuntu3.19
  • M
Improper Input Validation

<5.3.10-1ubuntu3.18
  • L
Improper Data Handling

<5.3.10-1ubuntu3.19
  • L
Numeric Errors

<5.3.10-1ubuntu3.19
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.18
  • M
Resource Management Errors

<5.3.10-1ubuntu3.19
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.18
  • L
Improper Data Handling

<5.3.10-1ubuntu3.19
  • M
CVE-2015-2301

<5.3.10-1ubuntu3.17
  • M
CVE-2015-2787

<5.3.10-1ubuntu3.18
  • L
Numeric Errors

<5.3.10-1ubuntu3.18
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.17
  • M
CVE-2015-0273

<5.3.10-1ubuntu3.17
  • L
CVE-2015-0231

<5.3.10-1ubuntu3.16
  • L
CVE-2014-8142

<5.3.10-1ubuntu3.16
  • L
Resource Management Errors

<5.3.10-1ubuntu3.17
  • L
Improper Input Validation

<5.3.10-1ubuntu3.15
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.15
  • M
Numeric Errors

<5.3.10-1ubuntu3.15
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.15
  • L
Link Following

*
  • L
Numeric Errors

<5.3.10-1ubuntu3.14
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.14
  • M
CVE-2014-4698

<5.3.10-1ubuntu3.13
  • M
CVE-2014-4670

<5.3.10-1ubuntu3.13
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.13
  • M
Improper Input Validation

<5.3.10-1ubuntu3.13
  • M
CVE-2014-3515

<5.3.10-1ubuntu3.13
  • M
Information Exposure

<5.3.10-1ubuntu3.13
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.12
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.12
  • L
Resource Management Errors

<5.3.10-1ubuntu3.12
  • M
Access Restriction Bypass

<5.3.10-1ubuntu3.12
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.11
  • M
Resource Management Errors

<5.3.10-1ubuntu3.10
  • M
Out-of-Bounds

<5.3.10-1ubuntu3.9
  • L
Out-of-Bounds

<5.3.10-1ubuntu3.9
  • M
Information Exposure

<5.3.10-1ubuntu3.6
  • M
Improper Input Validation

<5.3.10-1ubuntu3.8
  • H
Out-of-Bounds

<5.3.10-1ubuntu3.7
  • L
Numeric Errors

<5.3.10-1ubuntu3.7
  • M
Information Exposure

<5.3.10-1ubuntu3.6
  • M
Information Exposure

<5.3.10-1ubuntu3.5
  • M
Improper Input Validation

<5.3.10-1ubuntu3.4
  • M
Improper Input Validation

<5.3.10-1ubuntu3.4
  • M
CVE-2012-3450

<5.3.10-1ubuntu3.4
  • L
CVE-2012-2688

<5.3.10-1ubuntu3.4
  • M
Numeric Errors

<5.3.10-1ubuntu3.2
  • M
Cryptographic Issues

<5.3.10-1ubuntu3.2
  • L
Improper Input Validation

<5.3.10-1ubuntu3.2
  • M
Improper Input Validation

<5.3.10-1ubuntu3.1
  • L
Access Restriction Bypass

<5.3.10-1ubuntu3.2
  • L
Improper Input Validation

<5.3.10-1ubuntu3.2
  • M
SQL Injection

<5.3.10-1ubuntu3.1
  • L
Resource Management Errors

<5.3.10-1ubuntu3.2