CVE-2018-20783
In PHP before 5.6.39, 7.x before 7.0.33, 7.1.x before 7.1.25, and 7.2.x before 7.2.13, a buffer over-read in PHAR reading functions may a… (CVE-2018-20783)
highEPSS 5.7%
Description
In PHP before 5.6.39, 7.x before 7.0.33, 7.1.x before 7.1.25, and 7.2.x before 7.2.13, a buffer over-read in PHAR reading functions may allow an attacker to read allocated or unallocated memory past the actual data when trying to parse a .phar file. This is related to phar_parse_pharfile in ext/phar/phar.c.
Metrics
Severity
high
93.01
no public PoC known
7.5
92.5 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
Published
2019-02-21 19:00 UTC
—
Affected operating systems
linux
opensuse / leap42.3
Affected products
Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.
php
php7.0.0 – 7.0.33
php
php7.1.0 – 7.1.25
php
php7.2.0 – 7.2.13
php
php5.6.39
References & sources
- http://php.net/ChangeLog-5.phpx_refsource_MISC
- http://php.net/ChangeLog-7.phpx_refsource_MISC
- https://bugs.php.net/bug.php?id=77143x_refsource_MISC
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00083.htmlvendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00104.htmlvendor-advisoryx_refsource_SUSE
- https://usn.ubuntu.com/3566-2/vendor-advisoryx_refsource_UBUNTU
- http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00041.htmlvendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00044.htmlvendor-advisoryx_refsource_SUSE
- https://access.redhat.com/errata/RHSA-2019:2519vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2019:3299vendor-advisoryx_refsource_REDHAT
IDCVE-2018-20783