CVE-2023-3824 Information

Share on:

Description

In PHP version 8.0. before 8.0.30  8.1. before 8.1.22 and 8.2. before 8.2.8 when loading phar file while reading PHAR directory entries insufficient length checking may lead to a stack buffer overflow leading potentially to memory corruption or RCE. 

Reference

https://github.com/php/php-src/security/advisories/GHSA-jqcx-ccgc-xwhv