CVE-2020-7061Out-of-bounds Read in Group PHP

Severity
9.1CRITICALNVD
CNA6.5
EPSS
2.8%
top 13.95%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 27
Latest updateMay 24

Description

In PHP versions 7.3.x below 7.3.15 and 7.4.x below 7.4.3, while extracting PHAR files on Windows using phar extension, certain content inside PHAR file could lead to one-byte read past the allocated buffer. This could potentially lead to information disclosure or crash.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:HExploitability: 3.9 | Impact: 5.2

Affected Packages3 packages

CVEListV5php_group/php7.3.x7.3.15+1
NVDtenable/tenable.sc< 5.19.0
NVDphp/php7.2.07.2.27+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q6h5-x7cx-j9jg: In PHP versions 72022-05-24
CVEList
heap-buffer-overflow in phar_extract_file2020-02-27

📋Vendor Advisories

2
Red Hat
php: heap-based buffer overflow in phar_extract_file2020-01-26
Debian
CVE-2020-7061: php7.4 - In PHP versions 7.3.x below 7.3.15 and 7.4.x below 7.4.3, while extracting PHAR ...2020

💬Community

1
Bugzilla
CVE-2020-7061 php: heap-based buffer overflow in phar_extract_file2020-02-28
CVE-2020-7061 — Out-of-bounds Read in PHP Group PHP | cvebase