In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, the openssl extension PEM sealing code did not check the return value of the OpenSSL sealing function, which could lead to a crash of the PHP interpreter, related to an interpretation conflict for a negative number in ext/openssl/openssl.c, and an OpenSSL documentation omission.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-07-10T14:00:00
Updated: 2024-08-05T17:57:58.041Z
Reserved: 2017-07-10T00:00:00
Link: CVE-2017-11144
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-07-10T14:29:00.620
Modified: 2024-11-21T03:07:11.880
Link: CVE-2017-11144
Redhat