CVE-2014-5203
Publication date 18 August 2014
Last updated 24 July 2024
Ubuntu priority
Description
wp-includes/class-wp-customize-widgets.php in the widget implementation in WordPress 3.9.x before 3.9.2 might allow remote attackers to execute arbitrary code via crafted serialized data.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| wordpress | 18.04 LTS bionic |
Not affected
|
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |
Patch details
| Package | Patch details |
|---|---|
| wordpress |