// For flags

CVE-2017-11145

php: wddx_deserialize() heap out-of-bound read via php_parse_date()

Severity Score

7.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, an error in the date extension's timelib_meridian parsing code could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: the correct fix is in the e8b7698f5ee757ce2c8bd10a192a491a498f891c commit, not the bd77ac90d3bdf31ce2a5251ad92e9e75 gist.

En PHP anterior a versión 5.6.31, versión 7.x anterior a 7.0.21, y versión 7.1.x anterior a 7.1.7, un error en el código de análisis timelib_meridian de la extensión de fecha podría ser utilizado por los atacantes capaces de proporcionar cadenas de fecha para filtrar información del intérprete, relacionada con el archivo ext/date/lib/parse_date.c y vulnerabilidad de lectura fuera de límites que afectan a la función php_parse_date. NOTA: la corrección apropiada está en la commit e8b7698f5ee757ce2c8bd10a192a491a498f891c, no en la gist bd77ac90d3bdf31ce2a5251ad92e9e75.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-07-10 CVE Reserved
  • 2017-07-10 CVE Published
  • 2024-08-05 CVE Updated
  • 2024-09-01 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
<= 5.6.30
Search vendor "Php" for product "Php" and version " <= 5.6.30"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.0
Search vendor "Php" for product "Php" and version "7.0.0"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.1
Search vendor "Php" for product "Php" and version "7.0.1"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.2
Search vendor "Php" for product "Php" and version "7.0.2"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.3
Search vendor "Php" for product "Php" and version "7.0.3"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.4
Search vendor "Php" for product "Php" and version "7.0.4"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.5
Search vendor "Php" for product "Php" and version "7.0.5"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.6
Search vendor "Php" for product "Php" and version "7.0.6"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.7
Search vendor "Php" for product "Php" and version "7.0.7"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.8
Search vendor "Php" for product "Php" and version "7.0.8"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.9
Search vendor "Php" for product "Php" and version "7.0.9"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.10
Search vendor "Php" for product "Php" and version "7.0.10"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.11
Search vendor "Php" for product "Php" and version "7.0.11"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.12
Search vendor "Php" for product "Php" and version "7.0.12"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.13
Search vendor "Php" for product "Php" and version "7.0.13"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.14
Search vendor "Php" for product "Php" and version "7.0.14"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.15
Search vendor "Php" for product "Php" and version "7.0.15"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.16
Search vendor "Php" for product "Php" and version "7.0.16"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.17
Search vendor "Php" for product "Php" and version "7.0.17"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.18
Search vendor "Php" for product "Php" and version "7.0.18"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.19
Search vendor "Php" for product "Php" and version "7.0.19"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.0.20
Search vendor "Php" for product "Php" and version "7.0.20"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.0
Search vendor "Php" for product "Php" and version "7.1.0"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.1
Search vendor "Php" for product "Php" and version "7.1.1"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.2
Search vendor "Php" for product "Php" and version "7.1.2"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.3
Search vendor "Php" for product "Php" and version "7.1.3"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.4
Search vendor "Php" for product "Php" and version "7.1.4"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.5
Search vendor "Php" for product "Php" and version "7.1.5"
-
Affected
Php
Search vendor "Php"
Php
Search vendor "Php" for product "Php"
7.1.6
Search vendor "Php" for product "Php" and version "7.1.6"
-
Affected