Friday, May 30, 2025

[USN-7530-1] ADOdb vulnerability

==========================================================================
Ubuntu Security Notice USN-7530-1
May 29, 2025

libphp-adodb vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 25.04
- Ubuntu 24.10

Summary:

ADOdb could be made to crash or run programs if it received
specially crafted input.

Software Description:
- libphp-adodb: PHP database abstraction layer library

Details:

It was discovered that ADOdb incorrectly handled SQL input. A remote
attacker could use this issue to execute arbitrary SQL commands.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 25.04
libphp-adodb 5.22.8-0.1ubuntu0.1

Ubuntu 24.10
libphp-adodb 5.22.7-0.1ubuntu0.1

In general, a standard system update will make all the necessary changes.

References:
https://ubuntu.com/security/notices/USN-7530-1
CVE-2025-46337

Package Information:
https://launchpad.net/ubuntu/+source/libphp-adodb/5.22.8-0.1ubuntu0.1
https://launchpad.net/ubuntu/+source/libphp-adodb/5.22.7-0.1ubuntu0.1

No comments:

Post a Comment