{"api_version":"1","generated_at":"2026-07-23T13:41:21+00:00","cve":"CVE-2017-11143","urls":{"html":"https://cve.report/CVE-2017-11143","api":"https://cve.report/api/cve/CVE-2017-11143.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-11143","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-11143"},"summary":{"title":"CVE-2017-11143","description":"In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c.","state":"PUBLISHED","assigner":"mitre","published_at":"2017-07-10 14:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["CWE-416","CWE-502","n/a"],"metrics":[{"version":"3.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","data":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://openwall.com/lists/oss-security/2017/07/10/6","name":"http://openwall.com/lists/oss-security/2017/07/10/6","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE IDs needed for PHP vulnerabilites (affects\n 5.6.30 and 7.0.20)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://access.redhat.com/errata/RHSA-2018:1296","name":"https://access.redhat.com/errata/RHSA-2018:1296","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Red Hat Customer Portal","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/99553","name":"http://www.securityfocus.com/bid/99553","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"PHP CVE-2017-11143 Denial of Service Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://security.netapp.com/advisory/ntap-20180112-0001/","name":"https://security.netapp.com/advisory/ntap-20180112-0001/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"September 2017 PHP Vulnerabilities in NetApp Products | NetApp Product Security","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://git.php.net/?p=php-src.git%3Ba=commit%3Bh=2aae60461c2ff7b7fbcdd194c789ac841d0747d7","name":"https://git.php.net/?p=php-src.git%3Ba=commit%3Bh=2aae60461c2ff7b7fbcdd194c789ac841d0747d7","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"208.43.231.11 Git - php-src.git/commit","mime":"text/xml","httpstatus":"-1","archivestatus":"200"},{"url":"https://www.debian.org/security/2018/dsa-4081","name":"https://www.debian.org/security/2018/dsa-4081","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Debian -- Security Information -- DSA-4081-1 php5","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.tenable.com/security/tns-2017-12","name":"https://www.tenable.com/security/tns-2017-12","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[R1] SecurityCenter 5.3.2, 5.4.0, 5.4.2, 5.4.5, 5.5.0, and 5.5.1 Fixes Multiple Vulnerabilities - Security Advisory | Tenable™","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugs.php.net/bug.php?id=74145","name":"https://bugs.php.net/bug.php?id=74145","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Patch","Vendor Advisory"],"title":"PHP :: Sec Bug #74145 :: wddx parsing empty boolean tag leads to SIGSEGV","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://php.net/ChangeLog-5.php","name":"http://php.net/ChangeLog-5.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Release Notes","Vendor Advisory"],"title":"PHP: PHP 5 ChangeLog","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://git.php.net/?p=php-src.git;a=commit;h=2aae60461c2ff7b7fbcdd194c789ac841d0747d7","name":"CONFIRM:https://git.php.net/?p=php-src.git;a=commit;h=2aae60461c2ff7b7fbcdd194c789ac841d0747d7","refsource":"MITRE","tags":[],"title":"208.43.231.11 Git - php-src.git/commit","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-11143","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-11143","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"11143","vulnerable":"1","versionEndIncluding":"5.6.30","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"php","cpe5":"php","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-05T17:57:57.688Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://openwall.com/lists/oss-security/2017/07/10/6"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://www.tenable.com/security/tns-2017-12"},{"name":"99553","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/99553"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugs.php.net/bug.php?id=74145"},{"name":"RHSA-2018:1296","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"https://access.redhat.com/errata/RHSA-2018:1296"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://php.net/ChangeLog-5.php"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://security.netapp.com/advisory/ntap-20180112-0001/"},{"name":"DSA-4081","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"https://www.debian.org/security/2018/dsa-4081"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://git.php.net/?p=php-src.git%3Ba=commit%3Bh=2aae60461c2ff7b7fbcdd194c789ac841d0747d7"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2017-07-10T00:00:00.000Z","descriptions":[{"lang":"en","value":"In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-05-03T09:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"http://openwall.com/lists/oss-security/2017/07/10/6"},{"tags":["x_refsource_CONFIRM"],"url":"https://www.tenable.com/security/tns-2017-12"},{"name":"99553","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/99553"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugs.php.net/bug.php?id=74145"},{"name":"RHSA-2018:1296","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"https://access.redhat.com/errata/RHSA-2018:1296"},{"tags":["x_refsource_CONFIRM"],"url":"http://php.net/ChangeLog-5.php"},{"tags":["x_refsource_CONFIRM"],"url":"https://security.netapp.com/advisory/ntap-20180112-0001/"},{"name":"DSA-4081","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"https://www.debian.org/security/2018/dsa-4081"},{"tags":["x_refsource_CONFIRM"],"url":"https://git.php.net/?p=php-src.git%3Ba=commit%3Bh=2aae60461c2ff7b7fbcdd194c789ac841d0747d7"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2017-11143","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://openwall.com/lists/oss-security/2017/07/10/6","refsource":"CONFIRM","url":"http://openwall.com/lists/oss-security/2017/07/10/6"},{"name":"https://www.tenable.com/security/tns-2017-12","refsource":"CONFIRM","url":"https://www.tenable.com/security/tns-2017-12"},{"name":"99553","refsource":"BID","url":"http://www.securityfocus.com/bid/99553"},{"name":"https://bugs.php.net/bug.php?id=74145","refsource":"CONFIRM","url":"https://bugs.php.net/bug.php?id=74145"},{"name":"RHSA-2018:1296","refsource":"REDHAT","url":"https://access.redhat.com/errata/RHSA-2018:1296"},{"name":"http://php.net/ChangeLog-5.php","refsource":"CONFIRM","url":"http://php.net/ChangeLog-5.php"},{"name":"https://security.netapp.com/advisory/ntap-20180112-0001/","refsource":"CONFIRM","url":"https://security.netapp.com/advisory/ntap-20180112-0001/"},{"name":"DSA-4081","refsource":"DEBIAN","url":"https://www.debian.org/security/2018/dsa-4081"},{"name":"https://git.php.net/?p=php-src.git;a=commit;h=2aae60461c2ff7b7fbcdd194c789ac841d0747d7","refsource":"CONFIRM","url":"https://git.php.net/?p=php-src.git;a=commit;h=2aae60461c2ff7b7fbcdd194c789ac841d0747d7"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2017-11143","datePublished":"2017-07-10T14:00:00.000Z","dateReserved":"2017-07-10T00:00:00.000Z","dateUpdated":"2024-08-05T17:57:57.688Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-07-10 14:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["CWE-416","CWE-502","n/a"],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:*:*:*:*:*:*:*:*","versionEndIncluding":"5.6.30","matchCriteriaId":"399EA21A-9B46-4F4F-9A33-4DC557B11743"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"11143","Ordinal":"1","Title":"CVE-2017-11143","CVE":"CVE-2017-11143","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"11143","Ordinal":"1","NoteData":"In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c.","Type":"Description","Title":"CVE-2017-11143"},{"CveYear":"2017","CveId":"11143","Ordinal":"2","NoteData":"2017-07-10","Type":"Other","Title":"Published"},{"CveYear":"2017","CveId":"11143","Ordinal":"3","NoteData":"2018-05-03","Type":"Other","Title":"Modified"}]}}}