{"cves":[{"id":"CVE-2016-7413","published":"2016-09-17T00:00:00","updated_at":"2025-08-25T22:10:09.870783+00:00","description":"\nUse-after-free vulnerability in the wddx_stack_destroy function in\next/wddx/wddx.c in PHP before 5.6.26 and 7.x before 7.0.11 allows remote\nattackers to cause a denial of service or possibly have unspecified other\nimpact via a wddxPacket XML document that lacks an end-tag for a recordset\nfield element, leading to mishandling in a wddx_deserialize call.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://github.com/php/php-src/commit/b88393f08a558eec14964a55d3c680fe67407712?w=1","http://www.openwall.com/lists/oss-security/2016/09/15/6","http://php.net/ChangeLog-5.php#5.6.26","http://php.net/ChangeLog-7.php#7.0.11","https://ubuntu.com/security/notices/USN-3095-1","https://www.cve.org/CVERecord?id=CVE-2016-7413"],"bugs":["https://bugs.php.net/bug.php?id=72860"],"patches":{"php5":["upstream: http://git.php.net/?p=php-src.git;a=commit;h=b88393f08a558eec14964a55d3c680fe67407712"],"php7.0":["upstream: http://git.php.net/?p=php-src.git;a=commit;h=060ab26cfe2f25bc59eb2de593e11cea84ef70b0","upstream: http://git.php.net/?p=php-src.git;a=commit;h=b88393f08a558eec14964a55d3c680fe67407712"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"precise","status":"released","description":"5.3.10-1ubuntu3.25","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"5.5.9+dfsg-1ubuntu4.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.6.26","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"7.0.11","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"7.0.8-0ubuntu0.16.04.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-3095-1"],"notices":[{"id":"USN-3095-1","title":"PHP vulnerabilities","summary":"Several security issues were fixed in PHP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2016-10-04T17:18:27.117589","description":"Taoguang Chen discovered that PHP incorrectly handled certain invalid\nobjects when unserializing data. A remote attacker could use this issue to\ncause PHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7124)\n\nTaoguang Chen discovered that PHP incorrectly handled invalid session\nnames. A remote attacker could use this issue to inject arbitrary session\ndata. (CVE-2016-7125)\n\nIt was discovered that PHP incorrectly handled certain gamma values in the\nimagegammacorrect function. A remote attacker could use this issue to cause\nPHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7127)\n\nIt was discovered that PHP incorrectly handled certain crafted TIFF image\nthumbnails. A remote attacker could use this issue to cause PHP to crash,\nresulting in a denial of service, or possibly expose sensitive information.\n(CVE-2016-7128)\n\nIt was discovered that PHP incorrectly handled unserializing certain\nwddxPacket XML documents. A remote attacker could use this issue to cause\nPHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7129, CVE-2016-7130, CVE-2016-7131,\nCVE-2016-7132, CVE-2016-7413)\n\nIt was discovered that PHP incorrectly handled certain memory operations. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. This issue only\naffected Ubuntu 16.04 LTS. (CVE-2016-7133)\n\nIt was discovered that PHP incorrectly handled long strings in curl_escape\ncalls. A remote attacker could use this issue to cause PHP to crash,\nresulting in a denial of service, or possibly execute arbitrary code. This\nissue only affected Ubuntu 16.04 LTS. (CVE-2016-7134)\n\nTaoguang Chen discovered that PHP incorrectly handled certain failures when\nunserializing data. A remote attacker could use this issue to cause PHP to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. This issue only affected Ubuntu 12.04 LTS and Ubuntu 14.04 LTS.\n(CVE-2016-7411)\n\nIt was discovered that PHP incorrectly handled certain flags in the MySQL\ndriver. Malicious remote MySQL servers could use this issue to cause PHP to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. (CVE-2016-7412)\n\nIt was discovered that PHP incorrectly handled ZIP file signature\nverification when processing a PHAR archive. A remote attacker could use\nthis issue to cause PHP to crash, resulting in a denial of service, or\npossibly execute arbitrary code. (CVE-2016-7414)\n\nIt was discovered that PHP incorrectly handled certain locale operations. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. (CVE-2016-7416)\n\nIt was discovered that PHP incorrectly handled SplArray unserializing. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. (CVE-2016-7417)\n\nKe Liu discovered that PHP incorrectly handled unserializing wddxPacket XML\ndocuments with incorrect boolean elements. A remote attacker could use this\nissue to cause PHP to crash, resulting in a denial of service, or possibly\nexecute arbitrary code. (CVE-2016-7418)\n","is_hidden":false,"release_packages":{"precise":[{"name":"php5","version":"5.3.10-1ubuntu3.25","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php5","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-cgi","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-cli","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-curl","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-fpm","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-gd","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-mysqlnd","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"}],"trusty":[{"name":"php5","version":"5.5.9+dfsg-1ubuntu4.20","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php5","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"libapache2-mod-php5filter","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"libphp5-embed","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php-pear","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-cgi","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-cli","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-common","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-curl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-dev","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-enchant","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-fpm","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-gd","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-gmp","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-intl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-ldap","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-mysql","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-mysqlnd","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-odbc","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-pgsql","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-pspell","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-readline","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-recode","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-snmp","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-sqlite","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-sybase","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-tidy","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-xmlrpc","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-xsl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"}],"xenial":[{"name":"php7.0","version":"7.0.8-0ubuntu0.16.04.3","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php7.0","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"libphp7.0-embed","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-bcmath","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-bz2","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-cgi","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-cli","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-common","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-curl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-dba","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-dev","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-enchant","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-fpm","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-gd","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-gmp","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-imap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-interbase","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-intl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-json","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-ldap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mbstring","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mcrypt","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mysql","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-odbc","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-opcache","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-pgsql","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-phpdbg","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-pspell","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-readline","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-recode","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-snmp","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-soap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-sqlite3","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-sybase","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-tidy","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xml","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xmlrpc","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xsl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-zip","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-7124","CVE-2016-7125","CVE-2016-7127","CVE-2016-7128","CVE-2016-7129","CVE-2016-7130","CVE-2016-7131","CVE-2016-7132","CVE-2016-7133","CVE-2016-7134","CVE-2016-7411","CVE-2016-7412","CVE-2016-7413","CVE-2016-7414","CVE-2016-7416","CVE-2016-7417","CVE-2016-7418"]}]},{"id":"CVE-2016-7412","published":"2016-09-17T00:00:00","updated_at":"2025-08-25T22:10:09.870783+00:00","description":"\next/mysqlnd/mysqlnd_wireprotocol.c in PHP before 5.6.26 and 7.x before\n7.0.11 does not verify that a BIT field has the UNSIGNED_FLAG flag, which\nallows remote MySQL servers to cause a denial of service (heap-based buffer\noverflow) or possibly have unspecified other impact via crafted field\nmetadata.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.1,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2016/09/15/6","http://php.net/ChangeLog-5.php#5.6.26","http://php.net/ChangeLog-7.php#7.0.11","https://ubuntu.com/security/notices/USN-3095-1","https://www.cve.org/CVERecord?id=CVE-2016-7412"],"bugs":["https://bugs.php.net/bug.php?id=72293"],"patches":{"php5":["upstream: http://git.php.net/?p=php-src.git;a=commit;h=28f80baf3c53e267c9ce46a2a0fadbb981585132"],"php7.0":["upstream: http://git.php.net/?p=php-src.git;a=commit;h=c984661d39cfa4db1dd97fde1f59c77a44991440"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"precise","status":"released","description":"5.3.10-1ubuntu3.25","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"5.5.9+dfsg-1ubuntu4.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.6.26","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"7.0.11","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"7.0.8-0ubuntu0.16.04.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-3095-1"],"notices":[{"id":"USN-3095-1","title":"PHP vulnerabilities","summary":"Several security issues were fixed in PHP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2016-10-04T17:18:27.117589","description":"Taoguang Chen discovered that PHP incorrectly handled certain invalid\nobjects when unserializing data. A remote attacker could use this issue to\ncause PHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7124)\n\nTaoguang Chen discovered that PHP incorrectly handled invalid session\nnames. A remote attacker could use this issue to inject arbitrary session\ndata. (CVE-2016-7125)\n\nIt was discovered that PHP incorrectly handled certain gamma values in the\nimagegammacorrect function. A remote attacker could use this issue to cause\nPHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7127)\n\nIt was discovered that PHP incorrectly handled certain crafted TIFF image\nthumbnails. A remote attacker could use this issue to cause PHP to crash,\nresulting in a denial of service, or possibly expose sensitive information.\n(CVE-2016-7128)\n\nIt was discovered that PHP incorrectly handled unserializing certain\nwddxPacket XML documents. A remote attacker could use this issue to cause\nPHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7129, CVE-2016-7130, CVE-2016-7131,\nCVE-2016-7132, CVE-2016-7413)\n\nIt was discovered that PHP incorrectly handled certain memory operations. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. This issue only\naffected Ubuntu 16.04 LTS. (CVE-2016-7133)\n\nIt was discovered that PHP incorrectly handled long strings in curl_escape\ncalls. A remote attacker could use this issue to cause PHP to crash,\nresulting in a denial of service, or possibly execute arbitrary code. This\nissue only affected Ubuntu 16.04 LTS. (CVE-2016-7134)\n\nTaoguang Chen discovered that PHP incorrectly handled certain failures when\nunserializing data. A remote attacker could use this issue to cause PHP to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. This issue only affected Ubuntu 12.04 LTS and Ubuntu 14.04 LTS.\n(CVE-2016-7411)\n\nIt was discovered that PHP incorrectly handled certain flags in the MySQL\ndriver. Malicious remote MySQL servers could use this issue to cause PHP to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. (CVE-2016-7412)\n\nIt was discovered that PHP incorrectly handled ZIP file signature\nverification when processing a PHAR archive. A remote attacker could use\nthis issue to cause PHP to crash, resulting in a denial of service, or\npossibly execute arbitrary code. (CVE-2016-7414)\n\nIt was discovered that PHP incorrectly handled certain locale operations. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. (CVE-2016-7416)\n\nIt was discovered that PHP incorrectly handled SplArray unserializing. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. (CVE-2016-7417)\n\nKe Liu discovered that PHP incorrectly handled unserializing wddxPacket XML\ndocuments with incorrect boolean elements. A remote attacker could use this\nissue to cause PHP to crash, resulting in a denial of service, or possibly\nexecute arbitrary code. (CVE-2016-7418)\n","is_hidden":false,"release_packages":{"precise":[{"name":"php5","version":"5.3.10-1ubuntu3.25","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php5","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-cgi","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-cli","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-curl","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-fpm","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-gd","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-mysqlnd","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"}],"trusty":[{"name":"php5","version":"5.5.9+dfsg-1ubuntu4.20","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php5","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"libapache2-mod-php5filter","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"libphp5-embed","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php-pear","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-cgi","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-cli","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-common","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-curl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-dev","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-enchant","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-fpm","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-gd","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-gmp","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-intl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-ldap","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-mysql","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-mysqlnd","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-odbc","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-pgsql","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-pspell","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-readline","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-recode","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-snmp","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-sqlite","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-sybase","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-tidy","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-xmlrpc","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-xsl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"}],"xenial":[{"name":"php7.0","version":"7.0.8-0ubuntu0.16.04.3","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php7.0","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"libphp7.0-embed","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-bcmath","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-bz2","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-cgi","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-cli","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-common","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-curl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-dba","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-dev","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-enchant","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-fpm","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-gd","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-gmp","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-imap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-interbase","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-intl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-json","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-ldap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mbstring","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mcrypt","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mysql","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-odbc","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-opcache","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-pgsql","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-phpdbg","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-pspell","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-readline","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-recode","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-snmp","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-soap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-sqlite3","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-sybase","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-tidy","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xml","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xmlrpc","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xsl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-zip","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-7124","CVE-2016-7125","CVE-2016-7127","CVE-2016-7128","CVE-2016-7129","CVE-2016-7130","CVE-2016-7131","CVE-2016-7132","CVE-2016-7133","CVE-2016-7134","CVE-2016-7411","CVE-2016-7412","CVE-2016-7413","CVE-2016-7414","CVE-2016-7416","CVE-2016-7417","CVE-2016-7418"]}]},{"id":"CVE-2016-7411","published":"2016-09-17T00:00:00","updated_at":"2025-08-25T22:10:09.870783+00:00","description":"\next/standard/var_unserializer.re in PHP before 5.6.26 mishandles\nobject-deserialization failures, which allows remote attackers to cause a\ndenial of service (memory corruption) or possibly have unspecified other\nimpact via an unserialize call that references a partially constructed\nobject.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2016/09/15/6","http://php.net/ChangeLog-5.php#5.6.26","https://ubuntu.com/security/notices/USN-3095-1","https://www.cve.org/CVERecord?id=CVE-2016-7411"],"bugs":["https://bugs.php.net/bug.php?id=73052"],"patches":{"php5":["upstream: http://git.php.net/?p=php-src.git;a=commit;h=6a7cc8ff85827fa9ac715b3a83c2d9147f33cd43"],"php7.0":[]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"precise","status":"released","description":"5.3.10-1ubuntu3.25","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"5.5.9+dfsg-1ubuntu4.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.6.26","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3095-1"],"notices":[{"id":"USN-3095-1","title":"PHP vulnerabilities","summary":"Several security issues were fixed in PHP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2016-10-04T17:18:27.117589","description":"Taoguang Chen discovered that PHP incorrectly handled certain invalid\nobjects when unserializing data. A remote attacker could use this issue to\ncause PHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7124)\n\nTaoguang Chen discovered that PHP incorrectly handled invalid session\nnames. A remote attacker could use this issue to inject arbitrary session\ndata. (CVE-2016-7125)\n\nIt was discovered that PHP incorrectly handled certain gamma values in the\nimagegammacorrect function. A remote attacker could use this issue to cause\nPHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7127)\n\nIt was discovered that PHP incorrectly handled certain crafted TIFF image\nthumbnails. A remote attacker could use this issue to cause PHP to crash,\nresulting in a denial of service, or possibly expose sensitive information.\n(CVE-2016-7128)\n\nIt was discovered that PHP incorrectly handled unserializing certain\nwddxPacket XML documents. A remote attacker could use this issue to cause\nPHP to crash, resulting in a denial of service, or possibly execute\narbitrary code. (CVE-2016-7129, CVE-2016-7130, CVE-2016-7131,\nCVE-2016-7132, CVE-2016-7413)\n\nIt was discovered that PHP incorrectly handled certain memory operations. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. This issue only\naffected Ubuntu 16.04 LTS. (CVE-2016-7133)\n\nIt was discovered that PHP incorrectly handled long strings in curl_escape\ncalls. A remote attacker could use this issue to cause PHP to crash,\nresulting in a denial of service, or possibly execute arbitrary code. This\nissue only affected Ubuntu 16.04 LTS. (CVE-2016-7134)\n\nTaoguang Chen discovered that PHP incorrectly handled certain failures when\nunserializing data. A remote attacker could use this issue to cause PHP to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. This issue only affected Ubuntu 12.04 LTS and Ubuntu 14.04 LTS.\n(CVE-2016-7411)\n\nIt was discovered that PHP incorrectly handled certain flags in the MySQL\ndriver. Malicious remote MySQL servers could use this issue to cause PHP to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. (CVE-2016-7412)\n\nIt was discovered that PHP incorrectly handled ZIP file signature\nverification when processing a PHAR archive. A remote attacker could use\nthis issue to cause PHP to crash, resulting in a denial of service, or\npossibly execute arbitrary code. (CVE-2016-7414)\n\nIt was discovered that PHP incorrectly handled certain locale operations. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. (CVE-2016-7416)\n\nIt was discovered that PHP incorrectly handled SplArray unserializing. A\nremote attacker could use this issue to cause PHP to crash, resulting in a\ndenial of service, or possibly execute arbitrary code. (CVE-2016-7417)\n\nKe Liu discovered that PHP incorrectly handled unserializing wddxPacket XML\ndocuments with incorrect boolean elements. A remote attacker could use this\nissue to cause PHP to crash, resulting in a denial of service, or possibly\nexecute arbitrary code. (CVE-2016-7418)\n","is_hidden":false,"release_packages":{"precise":[{"name":"php5","version":"5.3.10-1ubuntu3.25","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php5","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-cgi","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-cli","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-curl","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-fpm","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-gd","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"},{"name":"php5-mysqlnd","version":"5.3.10-1ubuntu3.25","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.25"}],"trusty":[{"name":"php5","version":"5.5.9+dfsg-1ubuntu4.20","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php5","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"libapache2-mod-php5filter","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"libphp5-embed","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php-pear","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-cgi","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-cli","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-common","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-curl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-dev","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-enchant","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-fpm","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-gd","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-gmp","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-intl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-ldap","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-mysql","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-mysqlnd","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-odbc","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-pgsql","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-pspell","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-readline","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-recode","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-snmp","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-sqlite","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-sybase","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-tidy","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-xmlrpc","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"},{"name":"php5-xsl","version":"5.5.9+dfsg-1ubuntu4.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.9+dfsg-1ubuntu4.20","pocket":"security"}],"xenial":[{"name":"php7.0","version":"7.0.8-0ubuntu0.16.04.3","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"libapache2-mod-php7.0","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"libphp7.0-embed","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-bcmath","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-bz2","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-cgi","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-cli","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-common","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-curl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-dba","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-dev","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-enchant","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-fpm","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-gd","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-gmp","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-imap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-interbase","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-intl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-json","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-ldap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mbstring","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mcrypt","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-mysql","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-odbc","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-opcache","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-pgsql","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-phpdbg","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-pspell","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-readline","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-recode","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-snmp","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-soap","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-sqlite3","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-sybase","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-tidy","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xml","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xmlrpc","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-xsl","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"},{"name":"php7.0-zip","version":"7.0.8-0ubuntu0.16.04.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/php7.0","version_link":"https://launchpad.net/ubuntu/+source/php7.0/7.0.8-0ubuntu0.16.04.3","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-7124","CVE-2016-7125","CVE-2016-7127","CVE-2016-7128","CVE-2016-7129","CVE-2016-7130","CVE-2016-7131","CVE-2016-7132","CVE-2016-7133","CVE-2016-7134","CVE-2016-7411","CVE-2016-7412","CVE-2016-7413","CVE-2016-7414","CVE-2016-7416","CVE-2016-7417","CVE-2016-7418"]}]},{"id":"CVE-2016-7420","published":"2016-09-16T05:59:00","updated_at":"2025-08-25T22:10:09.870783+00:00","description":"\nCrypto++ (aka cryptopp) through 5.6.4 does not document the requirement for\na compile-time NDEBUG definition disabling the many assert calls that are\nunintended in production use, which might allow context-dependent attackers\nto obtain sensitive information by leveraging access to process memory\nafter an assertion failure, as demonstrated by reading a core dump.","ubuntu_description":"","notes":[{"author":"ratliff","note":"precise, trusty, xenial, yakkety all build using -NDEBUG"},{"author":"msalvatore","note":"I'm retiring this CVE and marking each release as \"ignored\". I've\nconfirmed ratliff's above comment. In addition, the fix for this\nCVE is simply an update to the documentation."}],"codename":null,"priority":"negligible","cvss3":5.9,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.9,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://github.com/weidai11/cryptopp/issues/277","http://www.openwall.com/lists/oss-security/2016/09/15/12","http://www.openwall.com/lists/oss-security/2016/09/16/1","https://github.com/weidai11/cryptopp/commit/553049ba297d89d9e8fbf2204acb40a8a53f5cd6","https://www.cve.org/CVERecord?id=CVE-2016-7420"],"bugs":[""],"patches":{"libcrypto++":[]},"tags":{},"packages":[{"name":"libcrypto++","source":"https://ubuntu.com/security/cve?package=libcrypto++","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libcrypto++","debian":"https://tracker.debian.org/pkg/libcrypto++","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.6.5","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"ignored","description":"end of standard support","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"},{"release_codename":"trusty","status":"ignored","description":"end of standard support","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-7422","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T22:10:15.333124+00:00","description":"\nThe virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick\nEmulator) allows local guest OS administrators to cause a denial of service\n(NULL pointer dereference and QEMU process crash) via a large I/O\ndescriptor buffer length value.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.0,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.0,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://lists.gnu.org/archive/html/qemu-devel/2016-09/msg03546.html","http://www.openwall.com/lists/oss-security/2016/09/16/4","https://ubuntu.com/security/notices/USN-3125-1","https://www.cve.org/CVERecord?id=CVE-2016-7422"],"bugs":["https://bugzilla.redhat.com/show_bug.cgi?id=1376755","https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=838146"],"patches":{"qemu-kvm":[],"qemu":["upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=973e7170dddefb491a48df5cba33b2ae151013a0"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:2.6.1+dfsg-0ubuntu5.1","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"precise","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3125-1"],"notices":[{"id":"USN-3125-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to restart all QEMU virtual\nmachines to make all the necessary changes.\n","references":[],"published":"2016-11-09T18:30:00.156405","description":"Zhenhao Hong discovered that QEMU incorrectly handled the Virtio module. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\nconsume resources, resulting in a denial of service. (CVE-2016-5403)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE VMXNET3 network\ncard emulation support. A privileged attacker inside the guest could use\nthis issue to cause QEMU to crash, resulting in a denial of service. This\nissue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-6833, CVE-2016-6834, CVE-2016-6888)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE VMXNET3 network\ncard emulation support. A privileged attacker inside the guest could use\nthis issue to cause QEMU to crash, resulting in a denial of service, or\npossibly execute arbitrary code on the host. In the default installation,\nwhen QEMU is used with libvirt, attackers would be isolated by the libvirt\nAppArmor profile. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04\nLTS and Ubuntu 16.10. (CVE-2016-6835)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE VMXNET3 network\ncard emulation support. A privileged attacker inside the guest could use\nthis issue to possibly to obtain sensitive host memory. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-6836)\n\nFelix Wilhelm discovered that QEMU incorrectly handled Plan 9 File System\n(9pfs) support. A privileged attacker inside the guest could use this issue\nto possibly to obtain sensitive host files. (CVE-2016-7116)\n\nLi Qiang and Tom Victor discovered that QEMU incorrectly handled VMWARE\nPVSCSI paravirtual SCSI bus emulation support. A privileged attacker inside\nthe guest could use this issue to cause QEMU to crash, resulting in a\ndenial of service. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04\nLTS and Ubuntu 16.10. (CVE-2016-7155)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE PVSCSI paravirtual\nSCSI bus emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n16.10. (CVE-2016-7156, CVE-2016-7421)\n\nTom Victor discovered that QEMU incorrectly handled LSI SAS1068 host bus\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 16.10. (CVE-2016-7157)\n\nHu Chaojian discovered that QEMU incorrectly handled xlnx.xps-ethernetlite\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service, or possibly\nexecute arbitrary code on the host. In the default installation, when QEMU\nis used with libvirt, attackers would be isolated by the libvirt AppArmor\nprofile. (CVE-2016-7161)\n\nQinghao Tang and Li Qiang discovered that QEMU incorrectly handled the\nVMWare VGA module. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2016-7170)\n\nQinghao Tang and Zhenhao Hong discovered that QEMU incorrectly handled the\nVirtio module. A privileged attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 16.10. (CVE-2016-7422)\n\nLi Qiang discovered that QEMU incorrectly handled LSI SAS1068 host bus\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 16.10. (CVE-2016-7423)\n\nLi Qiang discovered that QEMU incorrectly handled USB xHCI controller\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7466)\n\nLi Qiang discovered that QEMU incorrectly handled ColdFire Fast Ethernet\nController emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2016-7908)\n\nLi Qiang discovered that QEMU incorrectly handled AMD PC-Net II emulation\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. (CVE-2016-7909)\n\nLi Qiang discovered that QEMU incorrectly handled the Virtio GPU support. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\nconsume resources, resulting in a denial of service. This issue only\naffected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7994)\n\nLi Qiang discovered that QEMU incorrectly handled USB EHCI emulation\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to consume resources, resulting in a denial of service. This\nissue only affected Ubuntu 16.10. (CVE-2016-7995)\n\nLi Qiang discovered that QEMU incorrectly handled USB xHCI controller\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-8576)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-8577, CVE-2016-8578)\n\nIt was discovered that QEMU incorrectly handled Rocker switch emulation\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-8668)\n\nIt was discovered that QEMU incorrectly handled Intel HDA controller\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to consume resources, resulting in a denial of service.\n(CVE-2016-8909)\n\nAndrew Henderson discovered that QEMU incorrectly handled RTL8139 ethernet\ncontroller emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to consume resources, resulting in a denial of\nservice. (CVE-2016-8910)\n\nLi Qiang discovered that QEMU incorrectly handled Intel i8255x ethernet\ncontroller emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to consume resources, resulting in a denial of\nservice. (CVE-2016-9101)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to consume resources, resulting in a denial of service.\n(CVE-2016-9102, CVE-2016-9104, CVE-2016-9105)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\npossibly to obtain sensitive host memory. (CVE-2016-9103)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to consume resources, resulting in a denial of service. This\nissue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-9106)\n","is_hidden":false,"release_packages":{"precise":[{"name":"qemu-kvm","version":"1.0+noroms-0ubuntu14.31","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-kvm","version":"1.0+noroms-0ubuntu14.31","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu-kvm","version_link":"https://launchpad.net/ubuntu/+source/qemu-kvm/1.0+noroms-0ubuntu14.31"}],"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.30","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"}],"xenial":[{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.6","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-kvm","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-aarch64","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-common","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-user","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-user-static","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-utils","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"}],"yakkety":[{"name":"qemu","version":"1:2.6.1+dfsg-0ubuntu5.1","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-aarch64","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-arm","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-mips","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-misc","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-ppc","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-s390x","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-sparc","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-x86","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"}]},"type":"USN","cves_ids":["CVE-2016-5403","CVE-2016-6833","CVE-2016-6834","CVE-2016-6835","CVE-2016-6836","CVE-2016-6888","CVE-2016-7116","CVE-2016-7155","CVE-2016-7156","CVE-2016-7157","CVE-2016-7161","CVE-2016-7170","CVE-2016-7421","CVE-2016-7422","CVE-2016-7423","CVE-2016-7466","CVE-2016-7908","CVE-2016-7909","CVE-2016-7994","CVE-2016-7995","CVE-2016-8576","CVE-2016-8577","CVE-2016-8578","CVE-2016-8668","CVE-2016-8909","CVE-2016-8910","CVE-2016-9101","CVE-2016-9102","CVE-2016-9103","CVE-2016-9104","CVE-2016-9105","CVE-2016-9106"]}]},{"id":"CVE-2016-7421","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T22:10:09.870783+00:00","description":"\nThe pvscsi_ring_pop_req_descr function in hw/scsi/vmw_pvscsi.c in QEMU (aka\nQuick Emulator) allows local guest OS administrators to cause a denial of\nservice (infinite loop and QEMU process crash) by leveraging failure to\nlimit process IO loop to the ring size.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":4.4,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":4.4,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://lists.gnu.org/archive/html/qemu-devel/2016-09/msg03609.html","http://www.openwall.com/lists/oss-security/2016/09/16/3","https://ubuntu.com/security/notices/USN-3125-1","https://www.cve.org/CVERecord?id=CVE-2016-7421"],"bugs":["https://bugzilla.redhat.com/show_bug.cgi?id=1376731","https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=838147"],"patches":{"qemu-kvm":[],"qemu":["upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=d251157ac1928191af851d199a9ff255d330bec9"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.0.0+dfsg-2ubuntu1.30","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:2.5+dfsg-5ubuntu10.6","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1:2.6.1+dfsg-0ubuntu5.1","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"precise","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3125-1"],"notices":[{"id":"USN-3125-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to restart all QEMU virtual\nmachines to make all the necessary changes.\n","references":[],"published":"2016-11-09T18:30:00.156405","description":"Zhenhao Hong discovered that QEMU incorrectly handled the Virtio module. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\nconsume resources, resulting in a denial of service. (CVE-2016-5403)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE VMXNET3 network\ncard emulation support. A privileged attacker inside the guest could use\nthis issue to cause QEMU to crash, resulting in a denial of service. This\nissue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-6833, CVE-2016-6834, CVE-2016-6888)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE VMXNET3 network\ncard emulation support. A privileged attacker inside the guest could use\nthis issue to cause QEMU to crash, resulting in a denial of service, or\npossibly execute arbitrary code on the host. In the default installation,\nwhen QEMU is used with libvirt, attackers would be isolated by the libvirt\nAppArmor profile. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04\nLTS and Ubuntu 16.10. (CVE-2016-6835)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE VMXNET3 network\ncard emulation support. A privileged attacker inside the guest could use\nthis issue to possibly to obtain sensitive host memory. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-6836)\n\nFelix Wilhelm discovered that QEMU incorrectly handled Plan 9 File System\n(9pfs) support. A privileged attacker inside the guest could use this issue\nto possibly to obtain sensitive host files. (CVE-2016-7116)\n\nLi Qiang and Tom Victor discovered that QEMU incorrectly handled VMWARE\nPVSCSI paravirtual SCSI bus emulation support. A privileged attacker inside\nthe guest could use this issue to cause QEMU to crash, resulting in a\ndenial of service. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04\nLTS and Ubuntu 16.10. (CVE-2016-7155)\n\nLi Qiang discovered that QEMU incorrectly handled VMWARE PVSCSI paravirtual\nSCSI bus emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n16.10. (CVE-2016-7156, CVE-2016-7421)\n\nTom Victor discovered that QEMU incorrectly handled LSI SAS1068 host bus\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 16.10. (CVE-2016-7157)\n\nHu Chaojian discovered that QEMU incorrectly handled xlnx.xps-ethernetlite\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service, or possibly\nexecute arbitrary code on the host. In the default installation, when QEMU\nis used with libvirt, attackers would be isolated by the libvirt AppArmor\nprofile. (CVE-2016-7161)\n\nQinghao Tang and Li Qiang discovered that QEMU incorrectly handled the\nVMWare VGA module. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2016-7170)\n\nQinghao Tang and Zhenhao Hong discovered that QEMU incorrectly handled the\nVirtio module. A privileged attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 16.10. (CVE-2016-7422)\n\nLi Qiang discovered that QEMU incorrectly handled LSI SAS1068 host bus\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 16.10. (CVE-2016-7423)\n\nLi Qiang discovered that QEMU incorrectly handled USB xHCI controller\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to crash, resulting in a denial of service.\nThis issue only affected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7466)\n\nLi Qiang discovered that QEMU incorrectly handled ColdFire Fast Ethernet\nController emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to crash, resulting in a denial of service.\n(CVE-2016-7908)\n\nLi Qiang discovered that QEMU incorrectly handled AMD PC-Net II emulation\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. (CVE-2016-7909)\n\nLi Qiang discovered that QEMU incorrectly handled the Virtio GPU support. A\nprivileged attacker inside the guest could use this issue to cause QEMU to\nconsume resources, resulting in a denial of service. This issue only\naffected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7994)\n\nLi Qiang discovered that QEMU incorrectly handled USB EHCI emulation\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to consume resources, resulting in a denial of service. This\nissue only affected Ubuntu 16.10. (CVE-2016-7995)\n\nLi Qiang discovered that QEMU incorrectly handled USB xHCI controller\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-8576)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-8577, CVE-2016-8578)\n\nIt was discovered that QEMU incorrectly handled Rocker switch emulation\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-8668)\n\nIt was discovered that QEMU incorrectly handled Intel HDA controller\nemulation support. A privileged attacker inside the guest could use this\nissue to cause QEMU to consume resources, resulting in a denial of service.\n(CVE-2016-8909)\n\nAndrew Henderson discovered that QEMU incorrectly handled RTL8139 ethernet\ncontroller emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to consume resources, resulting in a denial of\nservice. (CVE-2016-8910)\n\nLi Qiang discovered that QEMU incorrectly handled Intel i8255x ethernet\ncontroller emulation support. A privileged attacker inside the guest could\nuse this issue to cause QEMU to consume resources, resulting in a denial of\nservice. (CVE-2016-9101)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to consume resources, resulting in a denial of service.\n(CVE-2016-9102, CVE-2016-9104, CVE-2016-9105)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\npossibly to obtain sensitive host memory. (CVE-2016-9103)\n\nLi Qiang discovered that QEMU incorrectly handled Plan 9 File System (9pfs)\nsupport. A privileged attacker inside the guest could use this issue to\ncause QEMU to consume resources, resulting in a denial of service. This\nissue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-9106)\n","is_hidden":false,"release_packages":{"precise":[{"name":"qemu-kvm","version":"1.0+noroms-0ubuntu14.31","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-kvm","version":"1.0+noroms-0ubuntu14.31","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu-kvm","version_link":"https://launchpad.net/ubuntu/+source/qemu-kvm/1.0+noroms-0ubuntu14.31"}],"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.30","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.30","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.30","pocket":"security"}],"xenial":[{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.6","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-kvm","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-aarch64","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-common","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-user","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-user-static","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"},{"name":"qemu-utils","version":"1:2.5+dfsg-5ubuntu10.6","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.6","pocket":"security"}],"yakkety":[{"name":"qemu","version":"1:2.6.1+dfsg-0ubuntu5.1","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-aarch64","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-arm","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-mips","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-misc","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-ppc","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-s390x","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-sparc","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"},{"name":"qemu-system-x86","version":"1:2.6.1+dfsg-0ubuntu5.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.6.1+dfsg-0ubuntu5.1"}]},"type":"USN","cves_ids":["CVE-2016-5403","CVE-2016-6833","CVE-2016-6834","CVE-2016-6835","CVE-2016-6836","CVE-2016-6888","CVE-2016-7116","CVE-2016-7155","CVE-2016-7156","CVE-2016-7157","CVE-2016-7161","CVE-2016-7170","CVE-2016-7421","CVE-2016-7422","CVE-2016-7423","CVE-2016-7466","CVE-2016-7908","CVE-2016-7909","CVE-2016-7994","CVE-2016-7995","CVE-2016-8576","CVE-2016-8577","CVE-2016-8578","CVE-2016-8668","CVE-2016-8909","CVE-2016-8910","CVE-2016-9101","CVE-2016-9102","CVE-2016-9103","CVE-2016-9104","CVE-2016-9105","CVE-2016-9106"]}]},{"id":"CVE-2016-6303","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T22:07:48.381390+00:00","description":"\nInteger overflow in the MDC2_Update function in crypto/mdc2/mdc2dgst.c in\nOpenSSL before 1.1.0 allows remote attackers to cause a denial of service\n(out-of-bounds write and application crash) or possibly have unspecified\nother impact via unknown vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://www.openssl.org/news/secadv/20160922.txt","https://ubuntu.com/security/notices/USN-3087-1","https://www.cve.org/CVERecord?id=CVE-2016-6303"],"bugs":[""],"patches":{"openssl":["upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=2b4029e68fd7002d2307e6c3cde0f3784eef9c83","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=1027ad4f34c30b8585592764b9a670ba36888269","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=55d83bf7c10c7b205fffa23fa7c3977491e56c07"],"openssl098":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"artful","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.0.1-4ubuntu5.37","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.1f-1ubuntu2.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.2i, 1.0.1u","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.2g-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":["USN-3087-1"],"notices":[{"id":"USN-3087-1","title":"OpenSSL vulnerabilities","summary":"Several security issues were fixed in OpenSSL.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2016-09-22T20:25:05.664702","description":"Shi Lei discovered that OpenSSL incorrectly handled the OCSP Status Request\nextension. A remote attacker could possibly use this issue to cause memory\nconsumption, resulting in a denial of service. (CVE-2016-6304)\n\nGuido Vranken discovered that OpenSSL used undefined behaviour when\nperforming pointer arithmetic. A remote attacker could possibly use this\nissue to cause OpenSSL to crash, resulting in a denial of service. This\nissue has only been addressed in Ubuntu 16.04 LTS in this update.\n(CVE-2016-2177)\n\nCésar Pereida, Billy Brumley, and Yuval Yarom discovered that OpenSSL\ndid not properly use constant-time operations when performing DSA signing.\nA remote attacker could possibly use this issue to perform a cache-timing\nattack and recover private DSA keys. (CVE-2016-2178)\n\nQuan Luo discovered that OpenSSL did not properly restrict the lifetime\nof queue entries in the DTLS implementation. A remote attacker could\npossibly use this issue to consume memory, resulting in a denial of\nservice. (CVE-2016-2179)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nTS_OBJ_print_bio() function. A remote attacker could possibly use this\nissue to cause a denial of service. (CVE-2016-2180)\n\nIt was discovered that the OpenSSL incorrectly handled the DTLS anti-replay\nfeature. A remote attacker could possibly use this issue to cause a denial\nof service. (CVE-2016-2181)\n\nShi Lei discovered that OpenSSL incorrectly validated division results. A\nremote attacker could possibly use this issue to cause a denial of service.\n(CVE-2016-2182)\n\nKarthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES\nciphers were vulnerable to birthday attacks. A remote attacker could\npossibly use this flaw to obtain clear text data from long encrypted\nsessions. This update moves DES from the HIGH cipher list to MEDIUM.\n(CVE-2016-2183)\n\nShi Lei discovered that OpenSSL incorrectly handled certain ticket lengths.\nA remote attacker could use this issue to cause a denial of service.\n(CVE-2016-6302)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nMDC2_Update() function. A remote attacker could possibly use this issue to\ncause a denial of service. (CVE-2016-6303)\n\nShi Lei discovered that OpenSSL incorrectly performed certain message\nlength checks. A remote attacker could possibly use this issue to cause a\ndenial of service. (CVE-2016-6306)\n","is_hidden":false,"release_packages":{"precise":[{"name":"openssl","version":"1.0.1-4ubuntu5.37","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.1-4ubuntu5.37","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1-4ubuntu5.37"}],"trusty":[{"name":"openssl","version":"1.0.1f-1ubuntu2.20","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-dev","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-doc","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"openssl","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"}],"xenial":[{"name":"openssl","version":"1.0.2g-1ubuntu4.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-dev","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-doc","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"openssl","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-2177","CVE-2016-2178","CVE-2016-2179","CVE-2016-2180","CVE-2016-2181","CVE-2016-2182","CVE-2016-2183","CVE-2016-6302","CVE-2016-6303","CVE-2016-6304","CVE-2016-6306"]}]},{"id":"CVE-2016-6302","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T22:07:48.381390+00:00","description":"\nThe tls_decrypt_ticket function in ssl/t1_lib.c in OpenSSL before 1.1.0\ndoes not consider the HMAC size during validation of the ticket length,\nwhich allows remote attackers to cause a denial of service via a ticket\nthat is too short.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.openssl.org/news/secadv/20160922.txt","https://ubuntu.com/security/notices/USN-3087-1","https://www.cve.org/CVERecord?id=CVE-2016-6302"],"bugs":[""],"patches":{"openssl":["upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=1bbe48ab149893a78bf99c8eb8895c928900a16f","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=baaabfd8fdcec04a691695fad9a664bea43202b6","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=e97763c92c655dcf4af2860b3abd2bc4c8a267f9"],"openssl098":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"artful","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.0.1-4ubuntu5.37","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.1f-1ubuntu2.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.2i, 1.0.1u","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.2g-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":["USN-3087-1"],"notices":[{"id":"USN-3087-1","title":"OpenSSL vulnerabilities","summary":"Several security issues were fixed in OpenSSL.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2016-09-22T20:25:05.664702","description":"Shi Lei discovered that OpenSSL incorrectly handled the OCSP Status Request\nextension. A remote attacker could possibly use this issue to cause memory\nconsumption, resulting in a denial of service. (CVE-2016-6304)\n\nGuido Vranken discovered that OpenSSL used undefined behaviour when\nperforming pointer arithmetic. A remote attacker could possibly use this\nissue to cause OpenSSL to crash, resulting in a denial of service. This\nissue has only been addressed in Ubuntu 16.04 LTS in this update.\n(CVE-2016-2177)\n\nCésar Pereida, Billy Brumley, and Yuval Yarom discovered that OpenSSL\ndid not properly use constant-time operations when performing DSA signing.\nA remote attacker could possibly use this issue to perform a cache-timing\nattack and recover private DSA keys. (CVE-2016-2178)\n\nQuan Luo discovered that OpenSSL did not properly restrict the lifetime\nof queue entries in the DTLS implementation. A remote attacker could\npossibly use this issue to consume memory, resulting in a denial of\nservice. (CVE-2016-2179)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nTS_OBJ_print_bio() function. A remote attacker could possibly use this\nissue to cause a denial of service. (CVE-2016-2180)\n\nIt was discovered that the OpenSSL incorrectly handled the DTLS anti-replay\nfeature. A remote attacker could possibly use this issue to cause a denial\nof service. (CVE-2016-2181)\n\nShi Lei discovered that OpenSSL incorrectly validated division results. A\nremote attacker could possibly use this issue to cause a denial of service.\n(CVE-2016-2182)\n\nKarthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES\nciphers were vulnerable to birthday attacks. A remote attacker could\npossibly use this flaw to obtain clear text data from long encrypted\nsessions. This update moves DES from the HIGH cipher list to MEDIUM.\n(CVE-2016-2183)\n\nShi Lei discovered that OpenSSL incorrectly handled certain ticket lengths.\nA remote attacker could use this issue to cause a denial of service.\n(CVE-2016-6302)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nMDC2_Update() function. A remote attacker could possibly use this issue to\ncause a denial of service. (CVE-2016-6303)\n\nShi Lei discovered that OpenSSL incorrectly performed certain message\nlength checks. A remote attacker could possibly use this issue to cause a\ndenial of service. (CVE-2016-6306)\n","is_hidden":false,"release_packages":{"precise":[{"name":"openssl","version":"1.0.1-4ubuntu5.37","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.1-4ubuntu5.37","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1-4ubuntu5.37"}],"trusty":[{"name":"openssl","version":"1.0.1f-1ubuntu2.20","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-dev","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-doc","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"openssl","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"}],"xenial":[{"name":"openssl","version":"1.0.2g-1ubuntu4.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-dev","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-doc","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"openssl","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-2177","CVE-2016-2178","CVE-2016-2179","CVE-2016-2180","CVE-2016-2181","CVE-2016-2182","CVE-2016-2183","CVE-2016-6302","CVE-2016-6303","CVE-2016-6304","CVE-2016-6306"]}]},{"id":"CVE-2016-2182","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T21:56:50.877785+00:00","description":"\nThe BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does\nnot properly validate division results, which allows remote attackers to\ncause a denial of service (out-of-bounds write and application crash) or\npossibly have unspecified other impact via unknown vectors.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"second commit needed to prevent regression"}],"codename":null,"priority":"low","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://www.openssl.org/news/secadv/20160922.txt","https://ubuntu.com/security/notices/USN-3087-1","https://ubuntu.com/security/notices/USN-3087-2","https://www.cve.org/CVERecord?id=CVE-2016-2182"],"bugs":[""],"patches":{"openssl":["upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=28a89639da50b1caed4ff3015508f23173bf3e49","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=3612ff6fcec0e3d1f2a598135fe12177c0419582","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=e36f27ddb80a48e579783bc29fb3758988342b71","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=67e11f1d44b85758f01b4905d64c4c49476c1db5"],"openssl098":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"artful","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.0.1-4ubuntu5.37","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.1f-1ubuntu2.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.2i, 1.0.1u","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.2g-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":["USN-3087-1"],"notices":[{"id":"USN-3087-1","title":"OpenSSL vulnerabilities","summary":"Several security issues were fixed in OpenSSL.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2016-09-22T20:25:05.664702","description":"Shi Lei discovered that OpenSSL incorrectly handled the OCSP Status Request\nextension. A remote attacker could possibly use this issue to cause memory\nconsumption, resulting in a denial of service. (CVE-2016-6304)\n\nGuido Vranken discovered that OpenSSL used undefined behaviour when\nperforming pointer arithmetic. A remote attacker could possibly use this\nissue to cause OpenSSL to crash, resulting in a denial of service. This\nissue has only been addressed in Ubuntu 16.04 LTS in this update.\n(CVE-2016-2177)\n\nCésar Pereida, Billy Brumley, and Yuval Yarom discovered that OpenSSL\ndid not properly use constant-time operations when performing DSA signing.\nA remote attacker could possibly use this issue to perform a cache-timing\nattack and recover private DSA keys. (CVE-2016-2178)\n\nQuan Luo discovered that OpenSSL did not properly restrict the lifetime\nof queue entries in the DTLS implementation. A remote attacker could\npossibly use this issue to consume memory, resulting in a denial of\nservice. (CVE-2016-2179)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nTS_OBJ_print_bio() function. A remote attacker could possibly use this\nissue to cause a denial of service. (CVE-2016-2180)\n\nIt was discovered that the OpenSSL incorrectly handled the DTLS anti-replay\nfeature. A remote attacker could possibly use this issue to cause a denial\nof service. (CVE-2016-2181)\n\nShi Lei discovered that OpenSSL incorrectly validated division results. A\nremote attacker could possibly use this issue to cause a denial of service.\n(CVE-2016-2182)\n\nKarthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES\nciphers were vulnerable to birthday attacks. A remote attacker could\npossibly use this flaw to obtain clear text data from long encrypted\nsessions. This update moves DES from the HIGH cipher list to MEDIUM.\n(CVE-2016-2183)\n\nShi Lei discovered that OpenSSL incorrectly handled certain ticket lengths.\nA remote attacker could use this issue to cause a denial of service.\n(CVE-2016-6302)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nMDC2_Update() function. A remote attacker could possibly use this issue to\ncause a denial of service. (CVE-2016-6303)\n\nShi Lei discovered that OpenSSL incorrectly performed certain message\nlength checks. A remote attacker could possibly use this issue to cause a\ndenial of service. (CVE-2016-6306)\n","is_hidden":false,"release_packages":{"precise":[{"name":"openssl","version":"1.0.1-4ubuntu5.37","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.1-4ubuntu5.37","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1-4ubuntu5.37"}],"trusty":[{"name":"openssl","version":"1.0.1f-1ubuntu2.20","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-dev","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-doc","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"openssl","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"}],"xenial":[{"name":"openssl","version":"1.0.2g-1ubuntu4.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-dev","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-doc","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"openssl","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-2177","CVE-2016-2178","CVE-2016-2179","CVE-2016-2180","CVE-2016-2181","CVE-2016-2182","CVE-2016-2183","CVE-2016-6302","CVE-2016-6303","CVE-2016-6304","CVE-2016-6306"]}]},{"id":"CVE-2016-2181","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T21:56:50.877785+00:00","description":"\nThe Anti-Replay feature in the DTLS implementation in OpenSSL before 1.1.0\nmishandles early use of a new epoch number in conjunction with a large\nsequence number, which allows remote attackers to cause a denial of service\n(false-positive packet drops) via spoofed DTLS records, related to\nrec_layer_d1.c and ssl3_record.c.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.openssl.org/news/secadv/20160922.txt","https://ubuntu.com/security/notices/USN-3087-1","https://www.cve.org/CVERecord?id=CVE-2016-2181"],"bugs":[""],"patches":{"openssl":["upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=fa75569758298e2930c78989b516cac937118acc","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=b77ab018b79a00f789b0fb85596b446b08be4c9d","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=5802758eb480c5f14a768f6a061df1dd20aec8c4","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=20744f6b40b5ded059a848f66d6ba922f2a62eb3","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=3884b47b7c255c2e94d9b387ee83c7e8bb981258","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=26aebca74e38ae09f673c2045cc8e2ef762d265a"],"openssl098":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"artful","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.0.1-4ubuntu5.37","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.1f-1ubuntu2.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.2i, 1.0.1u","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.2g-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":["USN-3087-1"],"notices":[{"id":"USN-3087-1","title":"OpenSSL vulnerabilities","summary":"Several security issues were fixed in OpenSSL.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2016-09-22T20:25:05.664702","description":"Shi Lei discovered that OpenSSL incorrectly handled the OCSP Status Request\nextension. A remote attacker could possibly use this issue to cause memory\nconsumption, resulting in a denial of service. (CVE-2016-6304)\n\nGuido Vranken discovered that OpenSSL used undefined behaviour when\nperforming pointer arithmetic. A remote attacker could possibly use this\nissue to cause OpenSSL to crash, resulting in a denial of service. This\nissue has only been addressed in Ubuntu 16.04 LTS in this update.\n(CVE-2016-2177)\n\nCésar Pereida, Billy Brumley, and Yuval Yarom discovered that OpenSSL\ndid not properly use constant-time operations when performing DSA signing.\nA remote attacker could possibly use this issue to perform a cache-timing\nattack and recover private DSA keys. (CVE-2016-2178)\n\nQuan Luo discovered that OpenSSL did not properly restrict the lifetime\nof queue entries in the DTLS implementation. A remote attacker could\npossibly use this issue to consume memory, resulting in a denial of\nservice. (CVE-2016-2179)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nTS_OBJ_print_bio() function. A remote attacker could possibly use this\nissue to cause a denial of service. (CVE-2016-2180)\n\nIt was discovered that the OpenSSL incorrectly handled the DTLS anti-replay\nfeature. A remote attacker could possibly use this issue to cause a denial\nof service. (CVE-2016-2181)\n\nShi Lei discovered that OpenSSL incorrectly validated division results. A\nremote attacker could possibly use this issue to cause a denial of service.\n(CVE-2016-2182)\n\nKarthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES\nciphers were vulnerable to birthday attacks. A remote attacker could\npossibly use this flaw to obtain clear text data from long encrypted\nsessions. This update moves DES from the HIGH cipher list to MEDIUM.\n(CVE-2016-2183)\n\nShi Lei discovered that OpenSSL incorrectly handled certain ticket lengths.\nA remote attacker could use this issue to cause a denial of service.\n(CVE-2016-6302)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nMDC2_Update() function. A remote attacker could possibly use this issue to\ncause a denial of service. (CVE-2016-6303)\n\nShi Lei discovered that OpenSSL incorrectly performed certain message\nlength checks. A remote attacker could possibly use this issue to cause a\ndenial of service. (CVE-2016-6306)\n","is_hidden":false,"release_packages":{"precise":[{"name":"openssl","version":"1.0.1-4ubuntu5.37","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.1-4ubuntu5.37","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1-4ubuntu5.37"}],"trusty":[{"name":"openssl","version":"1.0.1f-1ubuntu2.20","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-dev","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-doc","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"openssl","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"}],"xenial":[{"name":"openssl","version":"1.0.2g-1ubuntu4.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-dev","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-doc","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"openssl","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-2177","CVE-2016-2178","CVE-2016-2179","CVE-2016-2180","CVE-2016-2181","CVE-2016-2182","CVE-2016-2183","CVE-2016-6302","CVE-2016-6303","CVE-2016-6304","CVE-2016-6306"]}]},{"id":"CVE-2016-2179","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T21:56:50.877785+00:00","description":"\nThe DTLS implementation in OpenSSL before 1.1.0 does not properly restrict\nthe lifetime of queue entries associated with unused out-of-order messages,\nwhich allows remote attackers to cause a denial of service (memory\nconsumption) by maintaining many crafted DTLS sessions simultaneously,\nrelated to d1_lib.c, statem_dtls.c, statem_lib.c, and statem_srvr.c.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.openssl.org/news/secadv/20160922.txt","https://ubuntu.com/security/notices/USN-3087-1","https://www.cve.org/CVERecord?id=CVE-2016-2179"],"bugs":[""],"patches":{"openssl":["upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=00a4c1421407b6ac796688871b0a49a179c694d9","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=26f2c5774f117aea588e8f31fad38bcf14e83bec"],"openssl098":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"artful","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.0.1-4ubuntu5.37","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.1f-1ubuntu2.20","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.0.2i, 1.0.1u","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.2g-1ubuntu4.4","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"1.0.2g-1ubuntu9","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":["USN-3087-1"],"notices":[{"id":"USN-3087-1","title":"OpenSSL vulnerabilities","summary":"Several security issues were fixed in OpenSSL.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2016-09-22T20:25:05.664702","description":"Shi Lei discovered that OpenSSL incorrectly handled the OCSP Status Request\nextension. A remote attacker could possibly use this issue to cause memory\nconsumption, resulting in a denial of service. (CVE-2016-6304)\n\nGuido Vranken discovered that OpenSSL used undefined behaviour when\nperforming pointer arithmetic. A remote attacker could possibly use this\nissue to cause OpenSSL to crash, resulting in a denial of service. This\nissue has only been addressed in Ubuntu 16.04 LTS in this update.\n(CVE-2016-2177)\n\nCésar Pereida, Billy Brumley, and Yuval Yarom discovered that OpenSSL\ndid not properly use constant-time operations when performing DSA signing.\nA remote attacker could possibly use this issue to perform a cache-timing\nattack and recover private DSA keys. (CVE-2016-2178)\n\nQuan Luo discovered that OpenSSL did not properly restrict the lifetime\nof queue entries in the DTLS implementation. A remote attacker could\npossibly use this issue to consume memory, resulting in a denial of\nservice. (CVE-2016-2179)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nTS_OBJ_print_bio() function. A remote attacker could possibly use this\nissue to cause a denial of service. (CVE-2016-2180)\n\nIt was discovered that the OpenSSL incorrectly handled the DTLS anti-replay\nfeature. A remote attacker could possibly use this issue to cause a denial\nof service. (CVE-2016-2181)\n\nShi Lei discovered that OpenSSL incorrectly validated division results. A\nremote attacker could possibly use this issue to cause a denial of service.\n(CVE-2016-2182)\n\nKarthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES\nciphers were vulnerable to birthday attacks. A remote attacker could\npossibly use this flaw to obtain clear text data from long encrypted\nsessions. This update moves DES from the HIGH cipher list to MEDIUM.\n(CVE-2016-2183)\n\nShi Lei discovered that OpenSSL incorrectly handled certain ticket lengths.\nA remote attacker could use this issue to cause a denial of service.\n(CVE-2016-6302)\n\nShi Lei discovered that OpenSSL incorrectly handled memory in the\nMDC2_Update() function. A remote attacker could possibly use this issue to\ncause a denial of service. (CVE-2016-6303)\n\nShi Lei discovered that OpenSSL incorrectly performed certain message\nlength checks. A remote attacker could possibly use this issue to cause a\ndenial of service. (CVE-2016-6306)\n","is_hidden":false,"release_packages":{"precise":[{"name":"openssl","version":"1.0.1-4ubuntu5.37","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.1-4ubuntu5.37","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1-4ubuntu5.37"}],"trusty":[{"name":"openssl","version":"1.0.1f-1ubuntu2.20","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-dev","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl-doc","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"},{"name":"openssl","version":"1.0.1f-1ubuntu2.20","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.20","pocket":"security"}],"xenial":[{"name":"openssl","version":"1.0.2g-1ubuntu4.4","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-dev","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl-doc","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"},{"name":"openssl","version":"1.0.2g-1ubuntu4.4","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.4","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-2177","CVE-2016-2178","CVE-2016-2179","CVE-2016-2180","CVE-2016-2181","CVE-2016-2182","CVE-2016-2183","CVE-2016-6302","CVE-2016-6303","CVE-2016-6304","CVE-2016-6306"]}]},{"id":"CVE-2016-1240","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T21:53:57.666705+00:00","description":"\nThe Tomcat init script in the tomcat7 package before 7.0.56-3+deb8u4 and\ntomcat8 package before 8.0.14-1+deb8u3 on Debian jessie and the tomcat6 and\nlibtomcat6-java packages before 6.0.35-1ubuntu3.8 on Ubuntu 12.04 LTS, the\ntomcat7 and libtomcat7-java packages before 7.0.52-1ubuntu0.7 on Ubuntu\n14.04 LTS, and tomcat8 and libtomcat8-java packages before\n8.0.32-1ubuntu1.2 on Ubuntu 16.04 LTS allows local users with access to the\ntomcat account to gain root privileges via a symlink attack on the Catalina\nlog file, as demonstrated by /var/log/tomcat7/catalina.out.","ubuntu_description":"\nDawid Golunski discovered that the Tomcat init script incorrectly handled\ncreating log files. A remote attacker could possibly use this issue to\nobtain root privileges.","notes":[],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3081-1","https://ubuntu.com/security/notices/USN-3081-2","https://www.cve.org/CVERecord?id=CVE-2016-1240"],"bugs":[""],"patches":{"tomcat6":[],"tomcat7":[],"tomcat8":[]},"tags":{},"packages":[{"name":"tomcat6","source":"https://ubuntu.com/security/cve?package=tomcat6","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tomcat6","debian":"https://tracker.debian.org/pkg/tomcat6","statuses":[{"release_codename":"artful","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"6.0.35-1ubuntu3.8","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"6.0.39-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"6.0.45+dfsg-1ubuntu0.2","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"tomcat7","source":"https://ubuntu.com/security/cve?package=tomcat7","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tomcat7","debian":"https://tracker.debian.org/pkg/tomcat7","statuses":[{"release_codename":"artful","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"7.0.72-2","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"7.0.72-2","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"7.0.52-1ubuntu0.7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"7.0.68-1ubuntu0.3","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"tomcat8","source":"https://ubuntu.com/security/cve?package=tomcat8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tomcat8","debian":"https://tracker.debian.org/pkg/tomcat8","statuses":[{"release_codename":"artful","status":"released","description":"8.0.36-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"8.0.36-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"8.0.36-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"8.0.32-1ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"8.0.36-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"released","description":"8.0.36-2ubuntu1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3081-1","USN-3081-2"],"notices":[{"id":"USN-3081-1","title":"Tomcat vulnerability","summary":"The system could be made to run programs as an administrator.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":["https://launchpad.net/bugs/1609819"],"published":"2016-09-19T16:55:51.845348","description":"Dawid Golunski discovered that the Tomcat init script incorrectly handled\ncreating log files. A remote attacker could possibly use this issue to \nobtain root privileges. (CVE-2016-1240)\n\nThis update also reverts a change in behaviour introduced in USN-3024-1 by\nsetting mapperContextRootRedirectEnabled to True by default.\n","is_hidden":false,"release_packages":{"precise":[{"name":"tomcat6","version":"6.0.35-1ubuntu3.8","description":"Servlet and JSP engine","is_source":true},{"name":"libtomcat6-java","version":"6.0.35-1ubuntu3.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.35-1ubuntu3.8"},{"name":"tomcat6","version":"6.0.35-1ubuntu3.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.35-1ubuntu3.8"}],"trusty":[{"name":"tomcat7","version":"7.0.52-1ubuntu0.7","description":"Servlet and JSP engine","is_source":true},{"name":"libservlet3.0-java","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"libservlet3.0-java-doc","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"libtomcat7-java","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"tomcat7","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"tomcat7-admin","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"tomcat7-common","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"tomcat7-docs","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"tomcat7-examples","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"},{"name":"tomcat7-user","version":"7.0.52-1ubuntu0.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat7","version_link":"https://launchpad.net/ubuntu/+source/tomcat7/7.0.52-1ubuntu0.7","pocket":"security"}],"xenial":[{"name":"tomcat8","version":"8.0.32-1ubuntu1.2","description":"Servlet and JSP engine","is_source":true},{"name":"libservlet3.1-java","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"libservlet3.1-java-doc","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"libtomcat8-java","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"tomcat8","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"tomcat8-admin","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"tomcat8-common","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"tomcat8-docs","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"tomcat8-examples","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"},{"name":"tomcat8-user","version":"8.0.32-1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat8","version_link":"https://launchpad.net/ubuntu/+source/tomcat8/8.0.32-1ubuntu1.2","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1240"]},{"id":"USN-3081-2","title":"Tomcat vulnerability","summary":"The system could be made to run programs as an administrator.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-10-27T17:43:46.693212","description":"Dawid Golunski discovered that the Tomcat init script incorrectly handled\ncreating log files. A remote attacker could possibly use this issue to\nobtain root privileges.\n","is_hidden":false,"release_packages":{"xenial":[{"name":"tomcat6","version":"6.0.45+dfsg-1ubuntu0.2","description":"Servlet and JSP engine","is_source":true},{"name":"libservlet2.5-java","version":"6.0.45+dfsg-1ubuntu0.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.45+dfsg-1ubuntu0.2","pocket":"security"},{"name":"libservlet2.5-java-doc","version":"6.0.45+dfsg-1ubuntu0.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/tomcat6","version_link":"https://launchpad.net/ubuntu/+source/tomcat6/6.0.45+dfsg-1ubuntu0.2","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2016-1240"]}]},{"id":"CVE-2016-0634","published":"2016-09-16T00:00:00","updated_at":"2025-08-25T21:50:35.365800+00:00","description":"\nThe expansion of '\\h' in the prompt string in bash 4.3 allows remote\nauthenticated users to execute arbitrary code via shell metacharacters\nplaced in 'hostname' of a machine.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2016/09/16/8","https://ubuntu.com/security/notices/USN-3294-1","https://www.cve.org/CVERecord?id=CVE-2016-0634"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1507025"],"patches":{"bash":["upstream: https://ftp.gnu.org/gnu/bash/bash-4.3-patches/bash43-047"]},"tags":{},"packages":[{"name":"bash","source":"https://ubuntu.com/security/cve?package=bash","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=bash","debian":"https://tracker.debian.org/pkg/bash","statuses":[{"release_codename":"artful","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.3-7ubuntu1.7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.4","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.3-14ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"released","description":"4.3-15ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.4-2ubuntu1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3294-1"],"notices":[{"id":"USN-3294-1","title":"Bash vulnerabilities","summary":"Several security issues were fixed in Bash.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-05-17T17:06:15.319787","description":"Bernd Dietzel discovered that Bash incorrectly expanded the hostname when\ndisplaying the prompt. If a remote attacker were able to modify a hostname,\nthis flaw could be exploited to execute arbitrary code. This issue only\naffected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10.\n(CVE-2016-0634)\n\nIt was discovered that Bash incorrectly handled the SHELLOPTS and PS4\nenvironment variables. A local attacker could use this issue to execute\narbitrary code with root privileges. This issue only affected Ubuntu 14.04\nLTS, Ubuntu 16.04 LTS and Ubuntu 16.10. (CVE-2016-7543)\n\nIt was discovered that Bash incorrectly handled the popd command. A remote\nattacker could possibly use this issue to bypass restricted shells.\n(CVE-2016-9401)\n\nIt was discovered that Bash incorrectly handled path autocompletion. A\nlocal attacker could possibly use this issue to execute arbitrary code.\nThis issue only affected Ubuntu 17.04. (CVE-2017-5932)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"bash","version":"4.3-7ubuntu1.7","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"},{"name":"bash-builtins","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"},{"name":"bash-doc","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"},{"name":"bash-static","version":"4.3-7ubuntu1.7","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-7ubuntu1.7","pocket":"security"}],"xenial":[{"name":"bash","version":"4.3-14ubuntu1.2","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"},{"name":"bash-builtins","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"},{"name":"bash-doc","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"},{"name":"bash-static","version":"4.3-14ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-14ubuntu1.2","pocket":"security"}],"yakkety":[{"name":"bash","version":"4.3-15ubuntu1.1","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.3-15ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.3-15ubuntu1.1"}],"zesty":[{"name":"bash","version":"4.4-2ubuntu1.1","description":"GNU Bourne Again SHell","is_source":true},{"name":"bash","version":"4.4-2ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/bash","version_link":"https://launchpad.net/ubuntu/+source/bash/4.4-2ubuntu1.1"}]},"type":"USN","cves_ids":["CVE-2016-0634","CVE-2016-7543","CVE-2016-9401","CVE-2017-5932"]}]},{"id":"CVE-2016-6932","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6926,\nCVE-2016-6927, CVE-2016-6929, CVE-2016-6930, and CVE-2016-6931.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6932"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6931","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6926,\nCVE-2016-6927, CVE-2016-6929, CVE-2016-6930, and CVE-2016-6932.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6931"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6930","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6926,\nCVE-2016-6927, CVE-2016-6929, CVE-2016-6931, and CVE-2016-6932.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6930"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6929","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6926,\nCVE-2016-6927, CVE-2016-6930, CVE-2016-6931, and CVE-2016-6932.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6929"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6927","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6926,\nCVE-2016-6929, CVE-2016-6930, CVE-2016-6931, and CVE-2016-6932.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6927"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6926","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6927,\nCVE-2016-6929, CVE-2016-6930, CVE-2016-6931, and CVE-2016-6932.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6926"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2016-6925","published":"2016-09-14T18:59:00","updated_at":"2025-08-25T22:09:23.204790+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and\n19.x through 23.x before 23.0.0.162 on Windows and OS X and before\n11.2.202.635 on Linux allows attackers to execute arbitrary code via\nunspecified vectors, a different vulnerability than CVE-2016-4272,\nCVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6926, CVE-2016-6927,\nCVE-2016-6929, CVE-2016-6930, CVE-2016-6931, and CVE-2016-6932.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://helpx.adobe.com/security/products/flash-player/apsb16-29.html","https://www.cve.org/CVERecord?id=CVE-2016-6925"],"bugs":[""],"patches":{"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"precise","status":"released","description":"20160913.1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"20160913.1-0ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.635","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"20160913.1-0ubuntu0.16.04.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":59820,"limit":20,"total_results":79316}