Infinite loop in PHP - CVE-2018-5711
Published: February 7, 2018
Vulnerability identifier: #VU10390
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-5711
CWE-ID: CWE-835
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The disclosed vulnerability allows a local unauthenticated attacker to cause DoS condition.
The vulnerability exists in PHP GD Graphics Library due to insufficient sanitization of user-supplied data. A local attacker can submit a specially crafted GIF, trigger an infinite loop and cause the service to crash.
Affected software
PHP
Amazon Linux AMI
Gentoo Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for Power
SUSE Linux
Slackware Linux
Fedora
IBM Cloud Pak for Security
IBM Cloud Pak for Business Automation
QRadar Suite
php5 (Alpine package)
php7 (Alpine package)
gd
Business Automation Insights
Amazon Linux AMI
Gentoo Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for Power
SUSE Linux
Slackware Linux
Fedora
IBM Cloud Pak for Security
IBM Cloud Pak for Business Automation
QRadar Suite
php5 (Alpine package)
php7 (Alpine package)
gd
Business Automation Insights
How to mitigate CVE-2018-5711
The vulnerability is addressed in the following versions: 5.6.33, 7.0.27, 7.1.13, and 7.2.1.
IBM Cloud Pak for Security - update to 1.11.3.0
QRadar Suite - update to 1.11.3.0
php5 (Alpine package) - update to 5.6.33-r0
php7 (Alpine package) - update to 7.0.27-r0
IBM Cloud Pak for Business Automation - addressed in versions 24.0.0-IF005, 24.0.1-IF004, 25.0.0
Business Automation Insights - update to 24.0.1.0.4
gd - addressed in versions 2.2.5-2.fc26, 2.2.5-3.fc27, 2.2.5-3.fc28, 2.3.0-1.fc32
QRadar Suite - update to 1.11.3.0
php5 (Alpine package) - update to 5.6.33-r0
php7 (Alpine package) - update to 7.0.27-r0
IBM Cloud Pak for Business Automation - addressed in versions 24.0.0-IF005, 24.0.1-IF004, 25.0.0
Business Automation Insights - update to 24.0.1.0.4
gd - addressed in versions 2.2.5-2.fc26, 2.2.5-3.fc27, 2.2.5-3.fc28, 2.3.0-1.fc32
External References
Related Security Bulletins
- Slackware Linux update for php
- Multiple vulnerabilities in PHP
- Amazon Linux AMI update for php56, php70, php71
- SUSE Linux update for php53
- Red Hat update for php
- Gentoo update for GD
- Slackware Linux update for gd
- Infinite loop in php5 (Alpine package)
- Infinite loop in php7 (Alpine package)
- Fedora 28 update for gd
- Fedora 26 update for gd
- Fedora 27 update for gd
- Fedora 32 update for gd
- Multiple vulnerabilities in IBM Cloud Pak for Security and IBM QRadar Suite Software
- Multiple vulnerabilities in IBM Cloud Pak for Business Automation
- Multiple vulnerabilities in IBM Business Automation Insights