Vulnerability Report

CVE-2019-11043

RCE CISA KEV Active

Title: Redhat Software Collections RCE

RCE

Proof Of Concept

PoC Available for CVE-2019-11043

CWE Category CWE-787
Published Date Oct 28, 2019
Modified Date Nov 03, 2025
Exploit Status Available
Score 8.7 CVSS v3.1
Exploit Probability (EPSS)
94.05%

Vulnerability Summary

CVE-2019-11043: In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain configurations of FPM setup it is possible to cause FPM module to write past allocated buffers into the space reserved for FCGI protocol data, thus opening the possibility of remote code execution.

Impacted Vendors

Reference Links

http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00011.html http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00014.html http://packetstormsecurity.com/files/156642/PHP-FPM-7.x-Remote-Code-Execution.html http://seclists.org/fulldisclosure/2020/Jan/40 https://access.redhat.com/errata/RHSA-2019:3286 https://access.redhat.com/errata/RHSA-2019:3287 https://access.redhat.com/errata/RHSA-2019:3299 https://access.redhat.com/errata/RHSA-2019:3300 https://access.redhat.com/errata/RHSA-2019:3724 https://access.redhat.com/errata/RHSA-2019:3735 https://access.redhat.com/errata/RHSA-2019:3736 https://access.redhat.com/errata/RHSA-2020:0322 https://bugs.php.net/bug.php?id=78599 https://github.com/neex/phuip-fpizdam https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3W23TP6X4H7LB645FYZLUPNIRD5W3EPU/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FSNBUSPKMLUHHOADROKNG5GDWDCRHT5M/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T62LF4ZWVV7OMMIZFO6IFO5QLZKK7YRD/ https://seclists.org/bugtraq/2020/Jan/44 https://security.netapp.com/advisory/ntap-20191031-0003/ https://support.apple.com/kb/HT210919 https://support.f5.com/csp/article/K75408500?utm_source=f5support&amp%3Butm_medium=RSS https://usn.ubuntu.com/4166-1/ https://usn.ubuntu.com/4166-2/ https://www.debian.org/security/2019/dsa-4552 https://www.debian.org/security/2019/dsa-4553 https://www.synology.com/security/advisory/Synology_SA_19_36 https://www.tenable.com/security/tns-2021-14 http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00011.html http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00014.html http://packetstormsecurity.com/files/156642/PHP-FPM-7.x-Remote-Code-Execution.html http://seclists.org/fulldisclosure/2020/Jan/40 https://access.redhat.com/errata/RHSA-2019:3286 https://access.redhat.com/errata/RHSA-2019:3287 https://access.redhat.com/errata/RHSA-2019:3299 https://access.redhat.com/errata/RHSA-2019:3300 https://access.redhat.com/errata/RHSA-2019:3724 https://access.redhat.com/errata/RHSA-2019:3735 https://access.redhat.com/errata/RHSA-2019:3736 https://access.redhat.com/errata/RHSA-2020:0322 https://bugs.php.net/bug.php?id=78599 https://github.com/neex/phuip-fpizdam https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3W23TP6X4H7LB645FYZLUPNIRD5W3EPU/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FSNBUSPKMLUHHOADROKNG5GDWDCRHT5M/ https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T62LF4ZWVV7OMMIZFO6IFO5QLZKK7YRD/ https://seclists.org/bugtraq/2020/Jan/44 https://security.netapp.com/advisory/ntap-20191031-0003/ https://support.apple.com/kb/HT210919 https://support.f5.com/csp/article/K75408500?utm_source=f5support&amp%3Butm_medium=RSS https://usn.ubuntu.com/4166-1/ https://usn.ubuntu.com/4166-2/ https://www.debian.org/security/2019/dsa-4552 https://www.debian.org/security/2019/dsa-4553 https://www.synology.com/security/advisory/Synology_SA_19_36 https://www.tenable.com/security/tns-2021-14 https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-11043
CVSS v3.1
Source Entity [email protected]
Severity HIGH
8.7
Attack Vector
NETWORK
Complexity
HIGH
Privileges
N/A
Interaction
NONE
Confidentiality
N/A
Integrity
N/A
Availability
N/A
Scope
CHANGED
RAW VECTOR CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N
CVSS v3.1
Source Entity [email protected]
Severity CRITICAL
9.8
Attack Vector
NETWORK
Complexity
LOW
Privileges
N/A
Interaction
NONE
Confidentiality
N/A
Integrity
N/A
Availability
N/A
Scope
UNCHANGED
RAW VECTOR CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
Source Entity [email protected]
Severity HIGH
7.5
Access Vector
N/A
Authentication
N/A
RAW VECTOR AV:N/AC:L/Au:N/C:P/I:P/A:P

Associated Attack Patterns (CAPEC)

Total: Patterns

CVE-2019-11043 Exploits & PoCs (Proof Of Concept)

Exploit-DB https://www.exploit-db.com/exploits/48182
View Code
Exploit-DB https://www.exploit-db.com/exploits/47553
View Code
MODIFIED

Vulnerability data or affected products updated.

PUBLISHED

Vulnerability first announced in NVD.

Attack Vector Matrix

Access Vector NETWORK
Complexity HIGH
Privileges N/A
Interaction NONE
CVSS Vector String CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N

Affected Stack

No specific products linked.