Arbitrary code execution in PHP - CVE-2016-7418

 

Arbitrary code execution in PHP - CVE-2016-7418

Published: September 19, 2016


Vulnerability identifier: #VU528
CSH Severity: High
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-7418
CWE-ID: CWE-284
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote or local user to cause arbitrary code execution on the target system.
The weakness is caused by out-of-bounds memory read error in php_wddx_push_element() that allows a malicious user to execute arbitrary code.
Successful explotation of the vulnerability may result in arbitrary code execution on the vulnerable system.

Affected software

PHP
Arch Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for Power
SUSE Linux
Slackware Linux
Fedora
php (Alpine package)
php

How to mitigate CVE-2016-7418


php (Alpine package) - update to 5.6.27-r0
php - addressed in versions 5.6.26-1.fc23, 5.6.26-1.fc24

External References

Related Security Bulletins