{"api_version":"1","generated_at":"2026-07-24T17:16:29+00:00","cve":"CVE-2017-11147","urls":{"html":"https://cve.report/CVE-2017-11147","api":"https://cve.report/api/cve/CVE-2017-11147.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-11147","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-11147"},"summary":{"title":"CVE-2017-11147","description":"In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c.","state":"PUBLISHED","assigner":"mitre","published_at":"2017-07-10 14:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["CWE-125","n/a"],"metrics":[{"version":"3.1","source":"nvd@nist.gov","type":"Primary","score":"9.1","severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","baseScore":9.1,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6.4","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://openwall.com/lists/oss-security/2017/07/10/6","name":"http://openwall.com/lists/oss-security/2017/07/10/6","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Patch","Third Party Advisory"],"title":"oss-security - Re: CVE IDs needed for PHP vulnerabilites (affects\n 5.6.30 and 7.0.20)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://access.redhat.com/errata/RHSA-2018:1296","name":"https://access.redhat.com/errata/RHSA-2018:1296","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Red Hat Customer Portal","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=e5246580a85f031e1a3b8064edbaa55c1643a451","name":"http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=e5246580a85f031e1a3b8064edbaa55c1643a451","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"208.43.231.11 Git - php-src.git/commit","mime":"text/xml","httpstatus":"-1","archivestatus":"200"},{"url":"https://security.netapp.com/advisory/ntap-20180112-0001/","name":"https://security.netapp.com/advisory/ntap-20180112-0001/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"September 2017 PHP Vulnerabilities in NetApp Products | NetApp Product Security","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://php.net/ChangeLog-7.php","name":"http://php.net/ChangeLog-7.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Release Notes","Vendor Advisory"],"title":"PHP: PHP 7 ChangeLog","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/99607","name":"http://www.securityfocus.com/bid/99607","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"PHP CVE-2017-11147 Memory Corruption Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.tenable.com/security/tns-2017-12","name":"https://www.tenable.com/security/tns-2017-12","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"[R1] SecurityCenter 5.3.2, 5.4.0, 5.4.2, 5.4.5, 5.5.0, and 5.5.1 Fixes Multiple Vulnerabilities - Security Advisory | Tenable™","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://php.net/ChangeLog-5.php","name":"http://php.net/ChangeLog-5.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Release Notes","Vendor Advisory"],"title":"PHP: PHP 5 ChangeLog","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugs.php.net/bug.php?id=73773","name":"https://bugs.php.net/bug.php?id=73773","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Issue Tracking","Vendor Advisory"],"title":"PHP :: Sec Bug #73773 :: Seg fault when loading hostile phar","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://git.php.net/?p=php-src.git;a=commit;h=e5246580a85f031e1a3b8064edbaa55c1643a451","name":"CONFIRM:http://git.php.net/?p=php-src.git;a=commit;h=e5246580a85f031e1a3b8064edbaa55c1643a451","refsource":"MITRE","tags":[],"title":"208.43.231.11 Git - php-src.git/commit","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-11147","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-11147","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"11147","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"php","cpe5":"php","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-05T17:57:57.974Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://openwall.com/lists/oss-security/2017/07/10/6"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://www.tenable.com/security/tns-2017-12"},{"name":"RHSA-2018:1296","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"https://access.redhat.com/errata/RHSA-2018:1296"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://php.net/ChangeLog-5.php"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://security.netapp.com/advisory/ntap-20180112-0001/"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://php.net/ChangeLog-7.php"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=e5246580a85f031e1a3b8064edbaa55c1643a451"},{"name":"99607","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/99607"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugs.php.net/bug.php?id=73773"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2017-07-10T00:00:00.000Z","descriptions":[{"lang":"en","value":"In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-05-03T09:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"http://openwall.com/lists/oss-security/2017/07/10/6"},{"tags":["x_refsource_CONFIRM"],"url":"https://www.tenable.com/security/tns-2017-12"},{"name":"RHSA-2018:1296","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"https://access.redhat.com/errata/RHSA-2018:1296"},{"tags":["x_refsource_CONFIRM"],"url":"http://php.net/ChangeLog-5.php"},{"tags":["x_refsource_CONFIRM"],"url":"https://security.netapp.com/advisory/ntap-20180112-0001/"},{"tags":["x_refsource_CONFIRM"],"url":"http://php.net/ChangeLog-7.php"},{"tags":["x_refsource_CONFIRM"],"url":"http://git.php.net/?p=php-src.git%3Ba=commit%3Bh=e5246580a85f031e1a3b8064edbaa55c1643a451"},{"name":"99607","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/99607"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugs.php.net/bug.php?id=73773"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2017-11147","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://openwall.com/lists/oss-security/2017/07/10/6","refsource":"CONFIRM","url":"http://openwall.com/lists/oss-security/2017/07/10/6"},{"name":"https://www.tenable.com/security/tns-2017-12","refsource":"CONFIRM","url":"https://www.tenable.com/security/tns-2017-12"},{"name":"RHSA-2018:1296","refsource":"REDHAT","url":"https://access.redhat.com/errata/RHSA-2018:1296"},{"name":"http://php.net/ChangeLog-5.php","refsource":"CONFIRM","url":"http://php.net/ChangeLog-5.php"},{"name":"https://security.netapp.com/advisory/ntap-20180112-0001/","refsource":"CONFIRM","url":"https://security.netapp.com/advisory/ntap-20180112-0001/"},{"name":"http://php.net/ChangeLog-7.php","refsource":"CONFIRM","url":"http://php.net/ChangeLog-7.php"},{"name":"http://git.php.net/?p=php-src.git;a=commit;h=e5246580a85f031e1a3b8064edbaa55c1643a451","refsource":"CONFIRM","url":"http://git.php.net/?p=php-src.git;a=commit;h=e5246580a85f031e1a3b8064edbaa55c1643a451"},{"name":"99607","refsource":"BID","url":"http://www.securityfocus.com/bid/99607"},{"name":"https://bugs.php.net/bug.php?id=73773","refsource":"CONFIRM","url":"https://bugs.php.net/bug.php?id=73773"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2017-11147","datePublished":"2017-07-10T14:00:00.000Z","dateReserved":"2017-07-10T00:00:00.000Z","dateUpdated":"2024-08-05T17:57:57.974Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-07-10 14:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["CWE-125","n/a"],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","baseScore":9.1,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.2}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:P","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:*:*:*:*:*:*:*:*","versionEndExcluding":"5.6.30","matchCriteriaId":"76B7220C-1274-4F7F-914D-A1C6BF0EBDE8"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:*:*:*:*:*:*:*:*","versionStartIncluding":"7.0.0","versionEndExcluding":"7.0.15","matchCriteriaId":"3A59822F-11EA-4F4D-9721-6D3DD9842FC8"},{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:*:*:*:*:*:*:*:*","versionStartIncluding":"7.1.0","versionEndExcluding":"7.1.1","matchCriteriaId":"473456E3-B45F-46C0-AEF8-72D78487CF38"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:netapp:clustered_data_ontap:-:*:*:*:*:*:*:*","matchCriteriaId":"1FE996B1-6951-4F85-AA58-B99A379D2163"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"11147","Ordinal":"1","Title":"CVE-2017-11147","CVE":"CVE-2017-11147","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"11147","Ordinal":"1","NoteData":"In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c.","Type":"Description","Title":"CVE-2017-11147"},{"CveYear":"2017","CveId":"11147","Ordinal":"2","NoteData":"2017-07-10","Type":"Other","Title":"Published"},{"CveYear":"2017","CveId":"11147","Ordinal":"3","NoteData":"2018-05-03","Type":"Other","Title":"Modified"}]}}}