Infinite loop in PHP - CVE-2018-5711

 

Infinite loop in PHP - CVE-2018-5711

Published: February 7, 2018


Vulnerability identifier: #VU10390
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-5711
CWE-ID: CWE-835
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The disclosed vulnerability allows a local unauthenticated attacker to cause DoS condition.

The vulnerability exists  in PHP GD Graphics Library due to insufficient sanitization of user-supplied data. A local attacker can submit a specially crafted GIF, trigger an infinite loop and cause the service to crash.


Affected software

PHP
Amazon Linux AMI
Gentoo Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for Power
SUSE Linux
Slackware Linux
Fedora
IBM Cloud Pak for Security
IBM Cloud Pak for Business Automation
QRadar Suite
php5 (Alpine package)
php7 (Alpine package)
gd
Business Automation Insights

How to mitigate CVE-2018-5711

The vulnerability is addressed in the following versions: 5.6.33, 7.0.27, 7.1.13, and 7.2.1.

IBM Cloud Pak for Security - update to 1.11.3.0
QRadar Suite - update to 1.11.3.0
php5 (Alpine package) - update to 5.6.33-r0
php7 (Alpine package) - update to 7.0.27-r0
IBM Cloud Pak for Business Automation - addressed in versions 24.0.0-IF005, 24.0.1-IF004, 25.0.0
Business Automation Insights - update to 24.0.1.0.4
gd - addressed in versions 2.2.5-2.fc26, 2.2.5-3.fc27, 2.2.5-3.fc28, 2.3.0-1.fc32

External References

Related Security Bulletins