Описание
ELSA-2022-7340: php-pear security update (MODERATE)
[1:1.9.4-23]
- update Archive_Tar to 1.4.14 CVE-2020-36193 CVE-2020-28948 CVE-2020-28949
Обновленные пакеты
Oracle Linux 7
Oracle Linux aarch64
php-pear
1.9.4-23.el7_9
Oracle Linux x86_64
php-pear
1.9.4-23.el7_9
Связанные CVE
Связанные уязвимости
CVSS3: 7.8
ubuntu
больше 4 лет назад
Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked.
CVSS3: 7.8
redhat
больше 4 лет назад
Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked.
CVSS3: 7.8
nvd
больше 4 лет назад
Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked.