QID 198690

Date Published: 2022-03-09

QID 198690: Ubuntu Security Notification for Hypertext Preprocessor (PHP) Vulnerabilities (USN-5300-3)

Php incorrectly handled certain scripts.
Php incorrectly handled certain inputs.
Php incorrectly handled certain scripts with xml parsing functions.

This update provides thecorresponding updates for ubuntu 21.
An attacker could possibly use this issue to cause a denial of service.
An attacker could possibly use this issue to cause a denial of service, or possibly obtain sensitive information.
An attacker could possibly use this issue to obtain sensitive information.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5300-3 for updates and patch information.
    Vendor References

    CVEs related to QID 198690

    Software Advisories
    Advisory ID Software Component Link
    USN-5300-3 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5300-3