Oval Definition:oval:com.ubuntu.xenial:def:201711147000
Revision Date:2017-07-10Version:1
Title:CVE-2017-11147 on Ubuntu 16.04 LTS (xenial) - medium.
Description:In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-11147
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND NOT While related to the CVE in some way, the 'php7.0' package in xenial is not affected (note: '7.0.18-0ubuntu0.16.04.1').
  • BACK