First published: Tue Aug 13 2019(Updated: )
It was discovered that PHP incorrectly handled certain images. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2019-11041, CVE-2019-11042)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libapache2-mod-php7.2 | <7.2.19-0ubuntu0.19.04.2 | 7.2.19-0ubuntu0.19.04.2 |
Ubuntu OpenSSH Client | =19.04 | |
All of | ||
ubuntu/php7.2-cgi | <7.2.19-0ubuntu0.19.04.2 | 7.2.19-0ubuntu0.19.04.2 |
Ubuntu OpenSSH Client | =19.04 | |
All of | ||
ubuntu/php7.2-cli | <7.2.19-0ubuntu0.19.04.2 | 7.2.19-0ubuntu0.19.04.2 |
Ubuntu OpenSSH Client | =19.04 | |
All of | ||
ubuntu/php7.2-fpm | <7.2.19-0ubuntu0.19.04.2 | 7.2.19-0ubuntu0.19.04.2 |
Ubuntu OpenSSH Client | =19.04 | |
All of | ||
ubuntu/php7.2-xmlrpc | <7.2.19-0ubuntu0.19.04.2 | 7.2.19-0ubuntu0.19.04.2 |
Ubuntu OpenSSH Client | =19.04 | |
All of | ||
ubuntu/libapache2-mod-php7.2 | <7.2.19-0ubuntu0.18.04.2 | 7.2.19-0ubuntu0.18.04.2 |
Ubuntu OpenSSH Client | =18.04 | |
All of | ||
ubuntu/php7.2-cgi | <7.2.19-0ubuntu0.18.04.2 | 7.2.19-0ubuntu0.18.04.2 |
Ubuntu OpenSSH Client | =18.04 | |
All of | ||
ubuntu/php7.2-cli | <7.2.19-0ubuntu0.18.04.2 | 7.2.19-0ubuntu0.18.04.2 |
Ubuntu OpenSSH Client | =18.04 | |
All of | ||
ubuntu/php7.2-fpm | <7.2.19-0ubuntu0.18.04.2 | 7.2.19-0ubuntu0.18.04.2 |
Ubuntu OpenSSH Client | =18.04 | |
All of | ||
ubuntu/php7.2-xmlrpc | <7.2.19-0ubuntu0.18.04.2 | 7.2.19-0ubuntu0.18.04.2 |
Ubuntu OpenSSH Client | =18.04 | |
All of | ||
ubuntu/libapache2-mod-php7.0 | <7.0.33-0ubuntu0.16.04.6 | 7.0.33-0ubuntu0.16.04.6 |
Ubuntu OpenSSH Client | =16.04 | |
All of | ||
ubuntu/php7.0-cgi | <7.0.33-0ubuntu0.16.04.6 | 7.0.33-0ubuntu0.16.04.6 |
Ubuntu OpenSSH Client | =16.04 | |
All of | ||
ubuntu/php7.0-cli | <7.0.33-0ubuntu0.16.04.6 | 7.0.33-0ubuntu0.16.04.6 |
Ubuntu OpenSSH Client | =16.04 | |
All of | ||
ubuntu/php7.0-fpm | <7.0.33-0ubuntu0.16.04.6 | 7.0.33-0ubuntu0.16.04.6 |
Ubuntu OpenSSH Client | =16.04 | |
All of | ||
ubuntu/php7.0-xmlrpc | <7.0.33-0ubuntu0.16.04.6 | 7.0.33-0ubuntu0.16.04.6 |
Ubuntu OpenSSH Client | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2019-11041 and CVE-2019-11042.
The affected software includes libapache2-mod-php7.2, php7.2-cgi, php7.2-cli, php7.2-fpm, and php7.2-xmlrpc.
The severity of this vulnerability has not been specified.
An attacker could exploit this vulnerability to cause a denial of service or execute arbitrary code.
Yes, a fix is available for this vulnerability. Refer to the provided references for more information.