CVE-2005-3353

Advisory lineage Upstream: 0 Downstream: 4
Modified
Published: 18 Nov 2005, 23:00
Last modified:07 Aug 2024, 23:10

Vulnerability Summary

Overall Risk (default)
medium
32/100
CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
12.27% MEDIUM
12% probability -6.43%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

18 Nov 2005, 23:00
Published
Vulnerability first disclosed
07 Aug 2024, 23:10
Last Modified
Vulnerability information updated

Description

The exif_read_data function in the Exif module in PHP before 4.4.1 allows remote attackers to cause a denial of service (infinite loop) via a malformed JPEG image.

CVSS Metrics

  • v2.0MEDIUMScore: 5AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS Trends

Current EPSS score: 12.27% Percentile: 94%

Affected Systems

  • UnknownPHP

    4.0.0 | 4.0.1 | 4.0.2 | 4.0.3 | 4.0.4 | 4.0.5 | 4.0.6 | 4.1.0 | 4.1.1 | 4.1.2 | 4.2.0 | 4.2.1 | 4.2.2 | 4.2.3 | 4.3.0 | 4.3.1 | 4.3.2 | 4.3.3 | 4.3.4 | 4.3.5 | 4.3.6 | 4.3.7 | 4.3.8 | 4.3.9 | 4.3.10 | 4.3.11 | 4.4.0

References (30)