Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2023-50252
HistoryDec 12, 2023 - 9:15 p.m.

CVE-2023-50252

2023-12-1221:15:08
Debian Security Bug Tracker
security-tracker.debian.org
1
cve-2023-50252
svg file parsing
rendering library
<use> tag
<image> tag
href attribute
unsafe file read
phar deserialization vulnerability
php 8
patch

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.2%

php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when handling &lt;use&gt; tag that references an &lt;image&gt; tag, it merges the attributes from the &lt;use&gt; tag to the &lt;image&gt; tag. The problem pops up especially when the href attribute from the &lt;use&gt; tag has not been sanitized. This can lead to an unsafe file read that can cause PHAR Deserialization vulnerability in PHP prior to version 8. Version 0.5.1 contains a patch for this issue.

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.2%