suse · CVE-2016-4473

Quick triage

Priority: low Published: 2021-05-30 13:42:04 UTC Updated: 2025-05-01 01:28:07 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-4473 severity low: SUSE including 209 source package names (apache2-mod_php53, apache2-mod_php7, …), 518 product×package rows across 21 product lines (SUSE Enterprise Storage 7.1, SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS, … (21 product lines)): Known Not Affected 460, Fixed 58.

Description:

/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.

cvelogic Threat Intelligence