CVE-2020-7067

HIGH

PHP <7.2.30, <7.3.17, <7.4.5 - Memory Corruption

Title source: llm
STIX 2.1

Description

In PHP versions 7.2.x below 7.2.30, 7.3.x below 7.3.17 and 7.4.x below 7.4.5, if PHP is compiled with EBCDIC support (uncommon), urldecode() function can be made to access locations past the allocated memory, due to erroneously using signed numbers as array indexes.

References (7)

Core 7
Core References
Third Party Advisory vendor-advisory x_refsource_debian
https://www.debian.org/security/2020/dsa-4717
Third Party Advisory vendor-advisory x_refsource_debian
https://www.debian.org/security/2020/dsa-4719
Third Party Advisory x_refsource_misc
https://www.oracle.com/security-alerts/cpuoct2020.html
Exploit, Vendor Advisory x_refsource_confirm
https://bugs.php.net/bug.php?id=79465
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20200504-0001/
Not Applicable, Third Party Advisory x_refsource_misc
https://www.oracle.com/security-alerts/cpuApr2021.html
Patch, Third Party Advisory x_refsource_confirm
https://www.tenable.com/security/tns-2021-14

Scores

CVSS v3 7.5
EPSS 0.0998
EPSS Percentile 93.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-196 CWE-125
Status published
Products (5)
debian/debian_linux 9.0
debian/debian_linux 10.0
oracle/communications_diameter_signaling_router 8.0.0.0 - 8.4.0.5
php/php 7.2.0 - 7.2.30
tenable/tenable.sc < 5.19.0
Published Apr 27, 2020
Tracked Since Feb 18, 2026