CVE-2018-10549

Advisory lineage Upstream: 0 Downstream: 6
Modified
Published: 29 Apr 2018, 21:00
Last modified:05 Aug 2024, 07:39

Vulnerability Summary

Overall Risk (default)
medium
36/100
CVSS Score
8.8 HIGH
v3.0 (nvd)
EPSS Score
2.45% LOW
2% probability +0.18%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

29 Apr 2018, 21:00
Published
Vulnerability first disclosed
05 Aug 2024, 07:39
Last Modified
Vulnerability information updated

Description

An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. exif_read_data in ext/exif/exif.c has an out-of-bounds read for crafted JPEG data because exif_iif_add_value mishandles the case of a MakerNote that lacks a final '\0' character.

CVSS Metrics

  • v3.0HIGHScore: 8.8CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
  • v2.0MEDIUMScore: 6.8AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS Trends

Current EPSS score: 2.45% Percentile: 85%

Techniques & Countermeasures

  • CWE-125Out-of-bounds Read

    The product reads data past the end, or before the beginning, of the intended buffer.

Affected Systems

  • canonicalubuntu_linux

    16.04 | 17.10 | 18.04

  • debiandebian_linux

    8.0 | 9.0

  • netappstorage_automation_store

    na

  • UnknownPHP

    < 5.6.36 | ≥ 7.0.0, < 7.0.30 | ≥ 7.1.0, < 7.1.17 | ≥ 7.2.0, < 7.2.5

References (13)