Total vulnerabilities in the database
The openssl_random_pseudo_bytes function in ext/openssl/openssl.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 incorrectly relies on the deprecated RAND_pseudo_bytes function, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
Software | From | Fixed in |
---|---|---|
php / php | 5.4.0 | 5.4.44 |
php / php | 5.5.0 | 5.5.28 |
php / php | 5.6.0 | 5.6.12 |
canonical / ubuntu_linux | 12.04 | 12.04.x |
canonical / ubuntu_linux | 15.10 | 15.10.x |
canonical / ubuntu_linux | 14.04 | 14.04.x |