CVE-2016-6874
published 2017-02-17CVE-2016-6874: The array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, related to recursion.
PriorityP339critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
2.01%
78.4th percentile
The array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, related to recursion.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| hhvm | <= 3.14.5 | — |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6688-425h-xgq3: The array_*_recursive functions in Facebook HHVM before 3
ghsa_unreviewed·2022-05-17
CVE-2016-6874 [CRITICAL] GHSA-6688-425h-xgq3: The array_*_recursive functions in Facebook HHVM before 3
The array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, related to recursion.
OSV
CVE-2016-6874: The array_*_recursive functions in Facebook HHVM before 3
osv·2017-02-17·CVSS 9.8
CVE-2016-6874 [CRITICAL] CVE-2016-6874: The array_*_recursive functions in Facebook HHVM before 3
The array_*_recursive functions in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, related to recursion.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2016/08/11/1http://www.openwall.com/lists/oss-security/2016/08/19/1https://github.com/facebook/hhvm/commit/05e706d98f748f609b19d8697e490eaab5007d69http://www.openwall.com/lists/oss-security/2016/08/11/1http://www.openwall.com/lists/oss-security/2016/08/19/1https://github.com/facebook/hhvm/commit/05e706d98f748f609b19d8697e490eaab5007d69
2017-02-17
Published