ID | CVE-2020-7064 | ||||||
Sažetak | In PHP versions 7.2.x below 7.2.9, 7.3.x below 7.3.16 and 7.4.x below 7.4.4, while parsing EXIF data with exif_read_data() function, it is possible for malicious data to cause PHP to read one byte of uninitialized memory. This could potentially lead to information disclosure or crash. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:M/Au:N/C:P/I:N/A:P | ||||||
Zadnje važnije ažuriranje | 29-08-2022 - 20:04 | ||||||
Objavljeno | 01-04-2020 - 04:15 |