Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-31631

Опубликовано: 05 янв. 2023
Источник: redhat
CVSS3: 5.9

Описание

In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.

A flaw was found in PHP. This issue occurs due to an uncaught integer overflow in PDO::quote() of PDO_SQLite returning an improperly quoted string. With the implementation of sqlite3_snprintf(), it is possible to force the function to return a single apostrophe if the function is called on user-supplied input without any length restrictions in place.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6phpOut of support scope
Red Hat Enterprise Linux 7phpOut of support scope
Red Hat Software Collectionsrh-php73-phpWill not fix
Red Hat Enterprise Linux 8phpFixedRHSA-2023:084821.02.2023
Red Hat Enterprise Linux 8phpFixedRHSA-2023:290316.05.2023
Red Hat Enterprise Linux 9phpFixedRHSA-2023:096528.02.2023
Red Hat Enterprise Linux 9phpFixedRHSA-2023:241709.05.2023

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2158791php: PDO:: quote() may return unquoted string due to an integer overflow

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.1
ubuntu
4 месяца назад

In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.

CVSS3: 9.1
nvd
4 месяца назад

In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.

CVSS3: 9.1
debian
4 месяца назад

In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before ...

suse-cvrf
больше 2 лет назад

Security update for php7

suse-cvrf
больше 2 лет назад

Security update for php8

5.9 Medium

CVSS3