CVE-2023-3824 Information

Description

In PHP version 8.0. before 8.0.30  8.1. before 8.1.22 and 8.2. before 8.2.8 when loading phar file while reading PHAR directory entries insufficient length checking may lead to a stack buffer overflow leading potentially to memory corruption or RCE. 

Reference

https://github.com/php/php-src/security/advisories/GHSA-jqcx-ccgc-xwhv

Share on: