CVE-2011-3336: High severity php vulnerability
Published Feb 12, 2020
·Updated
regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.
Affected Software
4 affected components
PHP PHP>=5.3.0<=5.3.10
Apple iOS and macOS>=10.6.0<=10.7.2
FreeBSD FreeBSD=8.2
OpenBSD OpenBSD=5.0
Event History
Feb 12, 2020
CVE Published
via MITRE·07:32 PM
Data Sourced
via MITRE·07:32 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2011-3336?
CVE-2011-3336 is a vulnerability in the BSD implementation of libc that can be exploited to cause a denial of service due to stack exhaustion.
2
What software is affected by CVE-2011-3336?
The software affected by CVE-2011-3336 includes Freebsd 8.2, Apple Mac Os X up to version 10.7.2, Openbsd 5.0, and Php 5.3.0 up to version 5.3.10.
3
What is the severity of CVE-2011-3336?
The severity of CVE-2011-3336 is high, with a severity value of 7.
4
How can CVE-2011-3336 be exploited?
CVE-2011-3336 can be exploited by an attacker to cause a denial of service by exhausting the stack.
5
How can I fix CVE-2011-3336?
To fix CVE-2011-3336, it is recommended to apply the latest security patches provided by the software vendor.