Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-31628
HistorySep 28, 2022 - 11:15 p.m.

Code injection

2022-09-2823:15:00
PRIOn knowledge base
www.prio-n.com
79
php
code injection
vulnerability
phar
uncompressor
gzip files
infinite loop

7.3 High

AI Score

Confidence

Low

0.0005 Low

EPSS

Percentile

18.1%

In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress “quines” gzip files, resulting in an infinite loop.