Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In the crypt function, we attempt to null terminate a buffer using the size of the input salt without validating that the offset is within the buffer. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.
CVSS Information
N/A
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Katy Voor HHVM 缓冲区错误漏洞
Vulnerability Description
Katy Voor HHVM是 (Katy Voor)开源的一个应用软件。提供一个开放源代码的虚拟机,旨在执行用Hack编写的程序。 HHVM 存在安全漏洞,该漏洞源于crypt函数允许输入salt的大小为null终止缓冲区,而不验证偏移量是否在缓冲区内。以下产品及版本受到影响:HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and
CVSS Information
N/A
Vulnerability Type
N/A