cve-2019-11043

CRITICAL cisa_known_exploited
Description

In some versions of PHP in certain configurations of FPM setup, it is possible to cause FPM module to write past allocated buffers allowing the possibility of remote code execution.

Timeline
Published
2022-03-25
Last Modified
2022-03-25
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

{
  "cvss": 0.0,
  "datePublished": "2022-03-25",
  "dateUpdated": "2022-03-25",
  "description": "In some versions of PHP in certain configurations of FPM setup, it is possible to cause FPM module to write past allocated buffers allowing the possibility of remote code execution.",
  "dueDate": "2022-04-15",
  "id": "CVE-2019-11043",
  "kev_catalogs": [
    "cisa"
  ],
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2019-11043",
  "product": "FastCGI Process Manager (FPM)",
  "requiredAction": "Apply updates per vendor instructions.",
  "severity": "CRITICAL",
  "source": "cisa_known_exploited",
  "title": "PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability",
  "vendor": "PHP"
}
Enrichment data
View JSON API Download JSON