ZeroHour

CVE-2019-9640

PoC
CVSS 3.1
7.5 high
EPSS
6%p93
Published
()
Modified
Description

An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There is an Invalid Read in exif_process_SOFn.

Vendors
phpcanonicaldebianopensusenetappredhat
Products
php, ubuntu linux, debian linux, leap, storage automation store, software collections
Weakness
CWE-125
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.