The unserialize implementation in ext/standard/var.c in PHP 7.x before 7.0.14 allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted serialized data. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-6834.
{ "binaries": [ { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "libapache2-mod-php7.0" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "libphp7.0-embed" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-bcmath" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-bz2" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-cgi" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-cli" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-common" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-curl" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-dba" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-dev" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-enchant" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-fpm" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-gd" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-gmp" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-imap" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-interbase" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-intl" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-json" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-ldap" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-mbstring" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-mcrypt" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-mysql" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-odbc" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-opcache" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-pgsql" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-phpdbg" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-pspell" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-readline" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-recode" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-snmp" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-soap" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-sqlite3" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-sybase" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-tidy" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-xml" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-xmlrpc" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-xsl" }, { "binary_version": "7.0.15-0ubuntu0.16.04.2", "binary_name": "php7.0-zip" } ], "availability": "No subscription required" }