Описание
In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infinite loop.
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
esm-infra-legacy/trusty | needed | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
trusty | ignored | end of standard support |
trusty/esm | ignored | end of ESM support, was needed |
upstream | needs-triage | |
xenial | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
esm-infra/focal | DNE | |
esm-infra/xenial | released | 7.0.33-0ubuntu0.16.04.16+esm5 |
focal | DNE | |
jammy | DNE | |
trusty | DNE | |
upstream | needs-triage | |
xenial | ignored | end of standard support |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 7.2.24-0ubuntu0.18.04.15 |
esm-infra/bionic | not-affected | 7.2.24-0ubuntu0.18.04.15 |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
trusty | DNE | |
upstream | needs-triage | |
xenial | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
esm-infra/focal | not-affected | 7.4.3-4ubuntu2.15 |
focal | released | 7.4.3-4ubuntu2.15 |
jammy | DNE | |
trusty | DNE | |
upstream | needs-triage | |
xenial | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
devel | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | released | 8.1.2-1ubuntu2.8 |
kinetic | released | 8.1.7-1ubuntu3.1 |
lunar | released | 8.1.12-1ubuntu2 |
mantic | DNE | |
noble | DNE | |
oracular | DNE |
Показывать по
Ссылки на источники
2.3 Low
CVSS3
Связанные уязвимости
In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infinite loop.
In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infinite loop.
In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompresso ...
In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infinite loop.
Уязвимость языка программирования PHP, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании
2.3 Low
CVSS3