CVE-2016-4473
published 2017-06-08CVE-2016-4473: /ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to…
PriorityP354critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
7.75%
94.0th percentile
/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php | php | — | — |
| php5 | php5 | >= 0 < 5.5.9+dfsg-1ubuntu4.19 | 5.5.9+dfsg-1ubuntu4.19 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jvpg-hmq4-6326: /ext/phar/phar_object
ghsa_unreviewed·2022-05-17·CVSS 7.5
CVE-2016-4473 [HIGH] CWE-416 GHSA-jvpg-hmq4-6326: /ext/phar/phar_object
/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.
OSV
CVE-2016-4473: /ext/phar/phar_object
osv·2017-06-08·CVSS 7.5
CVE-2016-4473 [HIGH] CVE-2016-4473: /ext/phar/phar_object
/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.
Red Hat
php: Invalid free() instead of efree() in phar_extract_file()
vendor_redhat·2016-06-21·CVSS 7.5
CVE-2016-4473 [HIGH] php: Invalid free() instead of efree() in phar_extract_file()
php: Invalid free() instead of efree() in phar_extract_file()
/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.
Package: php (Red Hat Enterprise Linux 5) - Not affected
Package: php53 (Red Hat Enterprise Linux 5) - Not affected
Package: php (Red Hat Enterprise Linux 6) - Not affected
Package: php (Red Hat Enterprise Linux 7) - Not affected
Package: php54-php (Red Hat Software Collections) - Not affected
Package: php55-php (Red Hat Software Collections) - Not affected
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00007.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2750.htmlhttp://www.securityfocus.com/bid/98999https://bugzilla.redhat.com/show_bug.cgi?id=1347772http://lists.opensuse.org/opensuse-security-announce/2016-10/msg00007.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2750.htmlhttp://www.securityfocus.com/bid/98999https://bugzilla.redhat.com/show_bug.cgi?id=1347772
2017-06-08
Published