![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2017-11143 |
Description: | In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.811490 1.3.6.1.4.1.25623.1.0.811485 1.3.6.1.4.1.25623.1.0.891034 1.3.6.1.4.1.25623.1.0.704081 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2017-11143 BugTraq ID: 99553 http://www.securityfocus.com/bid/99553 Debian Security Information: DSA-4081 (Google Search) https://www.debian.org/security/2018/dsa-4081 RedHat Security Advisories: RHSA-2018:1296 https://access.redhat.com/errata/RHSA-2018:1296 |