Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-3824

Опубликовано: 03 авг. 2023
Источник: redhat
CVSS3: 7
EPSS Средний

Описание

In PHP version 8.0.* before 8.0.30,  8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading PHAR directory entries, insufficient length checking may lead to a stack buffer overflow, leading potentially to memory corruption or RCE.

A flaw was found in PHP that can lead to a buffer overflow and a stack information leak due to improper bounds checking within the phar_dir_read() function. This issue may allow an attacker to initiate memory corruption by compelling the application to open a specially crafted .phar archive, allowing the attacker to corrupt memory or cause a denial of service condition.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat CodeReady Studio 12phpOut of support scope
Red Hat Enterprise Linux 6phpNot affected
Red Hat Enterprise Linux 7phpNot affected
Red Hat OpenShift Dev SpacesphpNot affected
Red Hat Software Collectionsrh-php73-phpWill not fix
Red Hat Enterprise Linux 8phpFixedRHSA-2023:592719.10.2023
Red Hat Enterprise Linux 8phpFixedRHSA-2024:1095211.12.2024
Red Hat Enterprise Linux 9phpFixedRHSA-2023:592619.10.2023
Red Hat Enterprise Linux 9phpFixedRHSA-2024:038724.01.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-119

EPSS

Процентиль: 95%
0.16939
Средний

7 High

CVSS3

Связанные уязвимости

CVSS3: 9.4
ubuntu
почти 2 года назад

In PHP version 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading PHAR directory entries, insufficient length checking may lead to a stack buffer overflow, leading potentially to memory corruption or RCE.

CVSS3: 9.4
nvd
почти 2 года назад

In PHP version 8.0.* before 8.0.30,  8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading PHAR directory entries, insufficient length checking may lead to a stack buffer overflow, leading potentially to memory corruption or RCE.

CVSS3: 9.4
debian
почти 2 года назад

In PHP version 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* bef ...

CVSS3: 9.4
github
почти 2 года назад

Buffer overflow and overread in phar_dir_read()

CVSS3: 9.8
fstec
почти 2 года назад

Уязвимость функции phar_dir_read() интерпретатора PHP, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 95%
0.16939
Средний

7 High

CVSS3