CVE-2017-9118 PUBLISHED

PHP 7.1.5 has an Out of bounds access in php_pcre_replace_impl via a crafted preg_replace call.

EPSS 0.44% · 62.9th percentile

Risk Scores

EPSS Score
0.44%
62.9th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSphp8.10, 8.1.0-1, 8.1.0~rc4-1ubuntu2
Ubuntu:Pro:16.04:LTSphp7.07.0.3-9ubuntu1, 7.0.4-7ubuntu1, 7.0.4-5ubuntu2
Ubuntu:20.04:LTSphp7.47.4.3-4ubuntu2.9, 7.4.3-4ubuntu2.8, 7.4.3-4ubuntu2.7
Ubuntu:18.04:LTSphp7.27.2.24-0ubuntu0.18.04.9, 0, 7.2.1-1ubuntu2
Ubuntu:Pro:14.04:LTSphp55.5.9+dfsg-1ubuntu4.20, 5.5.9+dfsg-1ubuntu4.19, 5.5.9+dfsg-1ubuntu4.17

Timeline

References

Open in Interactive Console →