CVE-2019-11045
⚪ Do wiadomości
W PHP DirectoryIterator możliwe jest wstrzyknięcie bajtu \0, co prowadzi do luk w zabezpieczeniach.
CVSS
3.7
EPSS
8.8%
Exploit
poc
Vendor
canonical
Opis źródłowy (NVD)
In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0, PHP DirectoryIterator class accepts filenames with embedded \0 byte and treats them as terminating at that byte. This could lead to security vulnerabilities, e.g. in applications checking paths that the code is allowed to access.
exploit
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 3.7 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 8.8% |
| Opublikowano (NVD) | 2019-12-23 03:15:11 UTC |
| Ostatnia modyfikacja (NVD) | 2026-08-17 14:50:49 UTC |
Referencje
- http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00036.html (security@php.net) [Mailing List, Third Party Advisory]
- https://bugs.php.net/bug.php?id=78863 (security@php.net) [Exploit, Mailing List, Patch, Vendor Advisory]
- https://lists.debian.org/debian-lts-announce/2019/12/msg00034.html (security@php.net) [Mailing List, Third Party Advisory]
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N7GCOAE6KVHYJ3UQ4KLPLTGSLX6IRVRN/ (security@php.net)
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XWRQPYXVG43Q7DXMXH6UVWMKWGUW552F/ (security@php.net)
- https://seclists.org/bugtraq/2020/Feb/27 (security@php.net) [Mailing List, Third Party Advisory]
- https://seclists.org/bugtraq/2020/Feb/31 (security@php.net) [Mailing List, Third Party Advisory]
- https://seclists.org/bugtraq/2021/Jan/3 (security@php.net) [Mailing List, Third Party Advisory]
- https://security.netapp.com/advisory/ntap-20200103-0002/ (security@php.net) [Third Party Advisory]
- https://usn.ubuntu.com/4239-1/ (security@php.net) [Third Party Advisory]
- https://www.debian.org/security/2020/dsa-4626 (security@php.net) [Third Party Advisory]
- https://www.debian.org/security/2020/dsa-4628 (security@php.net) [Third Party Advisory]
- https://www.tenable.com/security/tns-2021-14 (security@php.net) [Third Party Advisory]