Risk Scores
EPSS Score
4.30%
88.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:Pro:14.04:LTS | php5 | 0, 5.5.3+dfsg-1ubuntu2, 5.5.3+dfsg-1ubuntu3 |
| Ubuntu:Pro:18.04:LTS | php7.2 | 7.2.24-0ubuntu0.18.04.17+esm12, 0, 7.2.1-1ubuntu2 |
| Ubuntu:Pro:16.04:LTS | php7.0 | 7.0.33-0ubuntu0.16.04.16+esm1, 7.0.33-0ubuntu0.16.04.16+esm2, 7.0.33-0ubuntu0.16.04.16+esm3 |
Timeline
- Jan 4, 2017 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 28, 2022 EPSS Score
- Jul 10, 2022 EPSS Score
- Sep 1, 2022 EPSS Score
- Oct 23, 2022 EPSS Score
- Dec 14, 2022 EPSS Score
- Mar 28, 2023 EPSS Score
- May 19, 2023 EPSS Score
- Jul 10, 2023 EPSS Score
- Aug 31, 2023 EPSS Score
- Dec 13, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2016-9138 third-party-advisory
- http://www.openwall.com/lists/oss-security/2016/11/01/7 third-party-advisory
- http://git.php.net/?p=php-src.git;a=commitdiff;h=0e6fe3a4c96be2d3e88389a5776f878021b4c59f;hp=e1709b7e588cbda71c577f6e5b701713d0c70a23 third-party-advisory
- https://github.com/php/php-src/commit/0e6fe3a4c96be2d3e88389a5776f878021b4c59f third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2016-9138 third-party-advisory