USN-6841-2: PHP vulnerability
USN-6841-1 fixed a vulnerability in PHP. This update provides the corresponding updates for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Original advisory details: It was discovered that PHP could early return in the filtervar function resulting in invalid user information being treated as valid user information. An attacker could possibly use this issue to expose raw user input information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6841-2?
USN-6841-2 addresses a vulnerability in PHP that has been assessed to pose potential risks to user information.
How do I fix USN-6841-2?
You can resolve the vulnerability by upgrading to the appropriate version of PHP packages recommended in the advisory.
Which versions of PHP are affected by USN-6841-2?
USN-6841-2 impacts PHP versions 7.0 and 7.2 on both Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.
What systems are impacted by USN-6841-2?
The affected systems based on USN-6841-2 include Ubuntu 16.04 LTS and Ubuntu 18.04 LTS installations with vulnerable PHP packages.
What packages need to be updated for USN-6841-2?
You need to update the libapache2-mod-php7.0, php7.0, and corresponding packages for PHP 7.0 and 7.2 to address USN-6841-2.