CVE-2003-1307 Information

Share on:

Description

LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks DISPUTED LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks The mod_php module for the Apache HTTP Server allows local users with write access to PHP scripts to send signals to the server’s process group and use the server’s file descriptors as demonstrated by sending a STOP signal then intercepting incoming connections on the server’s TCP port. NOTE: the PHP developer has disputed this vulnerability saying \The opened file descriptors are opened by Apache. It is the job of Apache to protect them … Not a bug in PHP.\

Reference

http://bugs.php.net/38915 http://hackerdom.ru/~dimmo/phpexpl.c http://www.securityfocus.com/archive/1/348368 http://www.securityfocus.com/archive/1/449234/100/0/threaded http://www.securityfocus.com/archive/1/449298/100/0/threaded http://www.securityfocus.com/bid/9302