Oval Definition:oval:com.ubuntu.trusty:def:201711147000
Revision Date:2017-07-10Version:1
Title:CVE-2017-11147 on Ubuntu 14.04 LTS (trusty) - medium.
Description:In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-11147
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND The 'php5' package in trusty was vulnerable but has been fixed (note: '5.5.9+dfsg-1ubuntu4.22').
  • BACK