QID 198686

Date Published: 2022-03-07

QID 198686: Ubuntu Security Notification for Hypertext Preprocessor (PHP) Vulnerabilities (USN-5300-2)

Php incorrectly handled certain scripts.
Php incorrectly handled certain inputs.
Php incorrectly handled certain scripts with xml parsing functions.

This update provides thecorresponding updates for ubuntu 18.
An attacker could possibly use this issue to cause a denial of service.
An attacker could possibly use this issue to cause a denial of service, or possibly obtain sensitive information.
An attacker could possibly use this issue to obtain sensitive information.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5300-2 for updates and patch information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    USN-5300-2 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5300-2