USN-3045-1: PHP vulnerabilities Ubuntu Security Notice USN-3045-1 2nd August, 2016 php5, php7.0 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary Several security issues were fixed in PHP. Software description php5 – HTML-embedded scripting language interpreter php7.0 – HTML-embedded scripting language interpreter Details It was discovered that PHP incorrectly handled certain SplMinHeap::compareoperations. A remote attacker could use this issue to cause PHP to crash,resulting in a denial of service, or possibly execute arbitrary code. Thisissue only affected Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. (CVE-2015-4116) It was discovered that PHP incorrectly handled recursive method calls. Aremote attacker could use this issue to cause PHP to crash, resulting in adenial of service. This issue only affected Ubuntu 12.04 LTS and Ubuntu14.04 LTS. (CVE-2015-8873) It was discovered that PHP [ more… ]