Unrated severityNVD Advisory· Published Jun 18, 2019· Updated Sep 17, 2024
Out-of-bounds read in iconv.c
CVE-2019-11039
Description
Function iconv_mime_decode_headers() in PHP versions 7.1.x below 7.1.30, 7.2.x below 7.2.19 and 7.3.x below 7.3.6 may perform out-of-buffer read due to integer overflow when parsing MIME headers. This may lead to information disclosure or crash.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- lists.opensuse.org/opensuse-security-announce/2019-07/msg00029.htmlmitrevendor-advisoryx_refsource_SUSE
- access.redhat.com/errata/RHSA-2019:2519mitrevendor-advisoryx_refsource_REDHAT
- access.redhat.com/errata/RHSA-2019:3299mitrevendor-advisoryx_refsource_REDHAT
- www.debian.org/security/2019/dsa-4527mitrevendor-advisoryx_refsource_DEBIAN
- www.debian.org/security/2019/dsa-4529mitrevendor-advisoryx_refsource_DEBIAN
- bugs.php.net/bug.phpmitrex_refsource_CONFIRM
- seclists.org/bugtraq/2019/Sep/35mitremailing-listx_refsource_BUGTRAQ
- seclists.org/bugtraq/2019/Sep/38mitremailing-listx_refsource_BUGTRAQ
News mentions
0No linked articles in our index yet.