HTTP: PHP SdnToJewish Function Integer Overflow

This signature detects attempts to exploit a known vulnerability against PHP. A successful attack can lead to arbitrary code execution.

Extended Description

Integer overflow in the SdnToJewish function in jewish.c in the Calendar component in PHP before 5.3.26 and 5.4.x before 5.4.16 allows context-dependent attackers to cause a denial of service (application hang) via a large argument to the jdtojewish function.

Affected Products

Php php

References

CVE: CVE-2013-4635

Short Name
HTTP:PHP:SDNTOJEWISH-FUNC-OF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2013-4635 Function Integer Overflow PHP SdnToJewish
Release Date
08/23/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3543
False Positive
Unknown
Vendors

Php

CVSS Score

5.0

Found a potential security threat?