Candidate: CVE-2018-6345 PublicDate: 2019-01-15 22:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6345 https://github.com/facebook/hhvm/commit/190ffdf6c8b1ec443be202c7d69e63a7e3da25e3 https://hhvm.com/blog/2019/01/14/hhvm-3.30.2.html Description: The function number_format is vulnerable to a heap overflow issue when its second argument ($dec_points) is excessively large. The internal implementation of the function will cause a string to be created with an invalid length, which can then interact poorly with other functions. This affects all supported versions of HHVM (3.30.1 and 3.27.5 and below). Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_hhvm: upstream_hhvm: needs-triage precise/esm_hhvm: DNE trusty_hhvm: DNE trusty/esm_hhvm: DNE xenial_hhvm: ignored (end of standard support, was needs-triage) bionic_hhvm: needs-triage cosmic_hhvm: DNE disco_hhvm: DNE eoan_hhvm: DNE focal_hhvm: DNE groovy_hhvm: DNE hirsute_hhvm: DNE impish_hhvm: DNE jammy_hhvm: DNE devel_hhvm: DNE