CVE-2018-7584: Buffer Overflow
apachemodphp. This issue was addressed by updating to php version 7.1.16.
Other sources
Fixed bug (stack-buffer-overflow while parsing HTTP response). (CVE-2018-7584)
— PHP
In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and ...
— Debian
Credit
Affected Software
Remediation
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4196
- CVE-2018-4253
- CVE-2018-4256
- CVE-2018-4255
- CVE-2018-4254
- CVE-2018-4258
- CVE-2018-4257
- CVE-2018-7584
- CVE-2018-4219
- CVE-2018-5383
- CVE-2018-4171
- CVE-2018-4194
- CVE-2018-4180
- CVE-2018-4181
- CVE-2018-4182
- CVE-2018-4183
- CVE-2018-4478
- CVE-2018-4251
- CVE-2018-4211
- CVE-2018-4229
- CVE-2018-4159
- CVE-2018-4242
- CVE-2018-4202
- CVE-2018-4217
- CVE-2018-4141
- CVE-2018-4228
- CVE-2018-4236
- CVE-2018-4234
- CVE-2018-4249
- CVE-2018-8897
- CVE-2018-4241
- CVE-2018-4243
- CVE-2018-4237
- CVE-2018-4404
- CVE-2018-4227
- CVE-2018-4235
- CVE-2018-4240
- CVE-2018-4230
- CVE-2018-4221
- CVE-2018-4223
- CVE-2018-4224
- CVE-2018-4225
- CVE-2018-4226
- CVE-2018-4184
- CVE-2018-4198
- CVE-2018-4193
Frequently Asked Questions
What is CVE-2018-7584?
CVE-2018-7584 is a vulnerability in PHP that allows for a stack-based buffer under-read while parsing an HTTP response.
How severe is CVE-2018-7584?
CVE-2018-7584 has a severity rating of 9.8 out of 10, which is considered critical.
How can I fix CVE-2018-7584?
To fix CVE-2018-7584, update to PHP version 7.1.16 or higher.
Where can I find more information about CVE-2018-7584?
You can find more information about CVE-2018-7584 on the PHP bug tracker and the GitHub commit page.
What are the Common Weakness Enumeration (CWE) categories for CVE-2018-7584?
The CWE categories for CVE-2018-7584 are CWE-125 (Out-of-bounds Read) and CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer).