/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.
{
"unresolved_ranges": [
{
"cpes": [
"cpe:2.3:a:php:php:5.6.0:alpha4:*:*:*:*:*:*",
"cpe:2.3:a:php:php:5.6.0:alpha5:*:*:*:*:*:*"
],
"vendor_product": "php:php",
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "5.6.0-alpha4"
},
{
"last_affected": "5.6.0-alpha5"
}
]
},
{
"cpes": [
"cpe:2.3:o:suse:linux_enterprise_module_for_web_scripting:12:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD",
"vendor_product": "suse:linux_enterprise_module_for_web_scripting",
"extracted_events": [
{
"last_affected": "12"
}
]
},
{
"cpes": [
"cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:sp1:*:*:*:*:*:*"
],
"source": "CPE_FIELD",
"vendor_product": "suse:linux_enterprise_software_development_kit",
"extracted_events": [
{
"last_affected": "12-sp1"
}
]
}
]
}