CVE-2023-0662

Updated: 2023-11-04 21:04:00.840974

Description:

In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, excessive number of parts in HTTP form upload can cause high resource consumption and excessive number of log entries. This can cause denial of service on the affected server by exhausting CPU resources or disk space. 


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated
EL 6 PHP php 7.4 7.5 HIGH Released CLSA-2023:1680293974 2023-03-31 17:02:50
EL 6 PHP php 5.5 7.5 HIGH Released CLSA-2023:1680290281 2023-03-31 17:02:50
EL 6 PHP php 5.3 7.5 HIGH Released CLSA-2023:1680289050 2023-03-31 17:02:53
EL 6 PHP php 7.1 7.5 HIGH Released CLSA-2023:1680292142 2023-03-31 17:02:53
EL 6 PHP php 5.1 7.5 HIGH Released CLSA-2023:1680287992 2023-03-31 17:02:53
EL 6 PHP php 5.6 7.5 HIGH Released CLSA-2023:1680290916 2023-03-31 17:02:53
EL 6 PHP php 5.4 7.5 HIGH Released CLSA-2023:1680289635 2023-03-31 17:02:53
EL 6 PHP php 5.2 7.5 HIGH Released CLSA-2023:1680288552 2023-03-31 17:02:53
EL 6 PHP php 7.2 7.5 HIGH Released CLSA-2023:1680292775 2023-03-31 17:02:53
EL 6 PHP php 7.3 7.5 HIGH Released CLSA-2023:1680293384 2023-03-31 17:02:53
Total: 86