cve-2019-11043
CRITICAL cisa_known_exploited
Description
In some versions of PHP in certain configurations of FPM setup, it is possible to cause FPM module to write past allocated buffers allowing the possibility of remote code execution.
Timeline
- Published
- 2022-03-25
- Last Modified
- 2022-03-25
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
{
"cvss": 0.0,
"datePublished": "2022-03-25",
"dateUpdated": "2022-03-25",
"description": "In some versions of PHP in certain configurations of FPM setup, it is possible to cause FPM module to write past allocated buffers allowing the possibility of remote code execution.",
"dueDate": "2022-04-15",
"id": "CVE-2019-11043",
"kev_catalogs": [
"cisa"
],
"knownRansomwareCampaignUse": "Known",
"notes": "https://nvd.nist.gov/vuln/detail/CVE-2019-11043",
"product": "FastCGI Process Manager (FPM)",
"requiredAction": "Apply updates per vendor instructions.",
"severity": "CRITICAL",
"source": "cisa_known_exploited",
"title": "PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability",
"vendor": "PHP"
}
Enrichment data
Aggregated bundle (all enrichments)