CVE-2019-9675

MEDIUM

Description

** DISPUTED ** An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible."

References

http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00104.html

http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00012.html

http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00041.html

http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00044.html

http://php.net/ChangeLog-7.php

https://bugs.php.net/bug.php?id=77586

https://usn.ubuntu.com/3922-2/

https://usn.ubuntu.com/3922-3/

Details

Source: MITRE

Published: 2019-03-11

Updated: 2019-06-03

Type: CWE-119

Risk Information

CVSS v2.0

Base Score: 6.8

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3.0

Base Score: 8.1

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 2.2

Severity: HIGH

Tenable Plugins

View all (12 total)

IDNameProductFamilySeverity
140983EulerOS Virtualization for ARM 64 3.0.6.0 : php (EulerOS-SA-2020-2035)NessusHuawei Local Security Checks
high
139977EulerOS 2.0 SP8 : php (EulerOS-SA-2020-1874)NessusHuawei Local Security Checks
high
126035openSUSE Security Update : php7 (openSUSE-2019-1573)NessusSuSE Local Security Checks
high
126034openSUSE Security Update : php7 (openSUSE-2019-1572)NessusSuSE Local Security Checks
high
125850SUSE SLED15 / SLES15 Security Update : php7 (SUSE-SU-2019:1461-1)NessusSuSE Local Security Checks
high
125700openSUSE Security Update : php5 (openSUSE-2019-1503)NessusSuSE Local Security Checks
medium
125457SUSE SLES12 Security Update : php5 (SUSE-SU-2019:1325-1)NessusSuSE Local Security Checks
medium
124401openSUSE Security Update : php7 (openSUSE-2019-1293)NessusSuSE Local Security Checks
high
124271Ubuntu 14.04 LTS : PHP vulnerabilities (USN-3922-2)NessusUbuntu Local Security Checks
high
124268SUSE SLES12 Security Update : php72 (SUSE-SU-2019:0988-1)NessusSuSE Local Security Checks
medium
123826SUSE SLES11 Security Update : php53 (SUSE-SU-2019:14013-1)NessusSuSE Local Security Checks
high
122722Debian DSA-4403-1 : php7.0 - security updateNessusDebian Local Security Checks
high