Lucene search

K
hackeroneGrigoritchyH1:950299
HistoryAug 03, 2020 - 3:54 p.m.

Internet Bug Bounty: Use after free vulnerability in phar_parse_zipfile

2020-08-0315:54:17
grigoritchy
hackerone.com
39

0.001 Low

EPSS

Percentile

25.1%

Malformed phar file with cache configuration leads freed memory as hash key when it inserts into the hash table.

More detail information and original report is here: https://bugs.php.net/bug.php?id=79797 and it was assigned CVE-2020-7068.

Impact

Through this vulnerability that inserts freed memory into the hash table that manages alias file names, an attacker may gain memory information.