CVE-2011-3699
Publication date 23 September 2011
Last updated 24 July 2024
Ubuntu priority
John Lim ADOdb Library for PHP 5.11 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tests/test-active-record.php and certain other files.
Status
Package | Ubuntu Release | Status |
---|---|---|
libphp-adodb | 24.10 oracular |
Vulnerable
|
24.04 LTS noble |
Vulnerable
|
|
22.04 LTS jammy |
Vulnerable
|
|
20.04 LTS focal |
Vulnerable
|
|
18.04 LTS bionic |
Vulnerable
|
|
16.04 LTS xenial |
Vulnerable
|
|
14.04 LTS trusty | Not in release | |
Notes
tyhicks
It isn't clear if the 5.12 release fixed this issue, which is what ships in Debian unstable.