Show plain JSON{"affected_release": [{"advisory": "RHSA-2015:1218", "cpe": "cpe:/o:redhat:enterprise_linux:6", "package": "php-0:5.3.3-46.el6_6", "product_name": "Red Hat Enterprise Linux 6", "release_date": "2015-07-09T00:00:00Z"}, {"advisory": "RHSA-2015:1135", "cpe": "cpe:/o:redhat:enterprise_linux:7", "package": "php-0:5.4.16-36.ael7b_1", "product_name": "Red Hat Enterprise Linux 7", "release_date": "2015-06-23T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php55-0:2.0-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php55-php-0:5.5.21-2.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-0:2.0-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-php-0:5.4.40-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-php-pecl-zendopcache-0:7.0.4-3.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php55-0:2.0-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php55-php-0:5.5.21-2.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-0:2.0-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-php-0:5.4.40-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-php-pecl-zendopcache-0:7.0.4-3.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.5 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php55-0:2.0-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php55-php-0:5.5.21-2.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-0:2.0-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-php-0:5.4.40-1.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el6", "package": "php54-php-pecl-zendopcache-0:7.0.4-3.el6", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 6.6 EUS", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el7", "package": "php55-0:2.0-1.el7", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 7", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1053", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el7", "package": "php55-php-0:5.5.21-2.el7", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 7", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el7", "package": "php54-0:2.0-1.el7", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 7", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el7", "package": "php54-php-0:5.4.40-1.el7", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 7", "release_date": "2015-06-04T00:00:00Z"}, {"advisory": "RHSA-2015:1066", "cpe": "cpe:/a:redhat:rhel_software_collections:2::el7", "package": "php54-php-pecl-zendopcache-0:7.0.4-3.el7", "product_name": "Red Hat Software Collections for Red Hat Enterprise Linux 7", "release_date": "2015-06-04T00:00:00Z"}], "bugzilla": {"description": "php: type confusion issue in unserialize() with various SOAP methods", "id": "1222538", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1222538"}, "csaw": false, "cvss": {"cvss_base_score": "4.3", "cvss_scoring_vector": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "status": "verified"}, "cwe": "CWE-843", "details": ["PHP before 5.6.7 might allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an unexpected data type, related to \"type confusion\" issues in (1) ext/soap/php_encoding.c, (2) ext/soap/php_http.c, and (3) ext/soap/soap.c, a different issue than CVE-2015-4600.", "Multiple flaws were discovered in the way PHP's Soap extension performed object unserialization. Specially crafted input processed by the unserialize() function could cause a PHP application to disclose portion of its memory or crash."], "name": "CVE-2015-4601", "package_state": [{"cpe": "cpe:/o:redhat:enterprise_linux:5", "fix_state": "Will not fix", "package_name": "php", "product_name": "Red Hat Enterprise Linux 5"}, {"cpe": "cpe:/o:redhat:enterprise_linux:5", "fix_state": "Will not fix", "package_name": "php53", "product_name": "Red Hat Enterprise Linux 5"}, {"cpe": "cpe:/a:redhat:rhel_software_collections:1", "fix_state": "Affected", "package_name": "php54-php", "product_name": "Red Hat Software Collections"}, {"cpe": "cpe:/a:redhat:rhel_software_collections:1", "fix_state": "Affected", "package_name": "php55-php", "product_name": "Red Hat Software Collections"}, {"cpe": "cpe:/a:redhat:rhel_software_collections:2", "fix_state": "Not affected", "package_name": "rh-php56-php", "product_name": "Red Hat Software Collections"}], "public_date": "2015-04-16T00:00:00Z", "references": ["https://www.cve.org/CVERecord?id=CVE-2015-4601\nhttps://nvd.nist.gov/vuln/detail/CVE-2015-4601"], "threat_severity": "Moderate"}