Logo
Explore Help
Register Sign In
0xMarcio/cve
1
0
Fork 0
You've already forked cve
Code Issues Pull Requests Actions 2 Packages Projects Releases Wiki Activity
Files
b0303abc0c853353565d394a030a7b107e662d22
cve/2023/CVE-2023-3824.md
0xMarcio b0303abc0c Update CVE sources 2024-08-25 17:33
2024-08-25 17:33:10 +00:00

1.5 KiB
Raw Blame History

CVE-2023-3824

Description

In PHP version 8.0.* before 8.0.30,  8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading PHAR directory entries, insufficient length checking may lead to a stack buffer overflow, leading potentially to memory corruption or RCE. 

POC

Reference

  • https://github.com/php/php-src/security/advisories/GHSA-jqcx-ccgc-xwhv

Github

  • https://github.com/IamdLite/lockbit-message-fbi
  • https://github.com/NewLockBit/CVE-2023-3824-PHP-to-RCE
  • https://github.com/NewLockBit/CVE-2023-3824-PHP-to-RCE-LockBit-LEAK
  • https://github.com/NewLockBit/CVE-2023-3824-PHP-to-RCE-National-Crime-AgencyLEAK
  • https://github.com/NewLockBit/Research-of-CVE-2023-3824-NCA-Lockbit
  • https://github.com/Nfttkcauzy/CVE-2023-3824-PHP-to-RCE-LockBit-LEAK
  • https://github.com/Nuki2u/CVE-2023-3824-PHP-to-RCE-LockBit-LEAK
  • https://github.com/Starla2u/CVE-2023-3824-PHP-to-RCE-LockBit-LEAK
  • https://github.com/StayBeautiful-collab/CVE-2023-3824-PHP-to-RCE-LockBit-LEAK
  • https://github.com/fkie-cad/nvd-json-data-feeds
  • https://github.com/jhonnybonny/CVE-2023-3824
  • https://github.com/nomi-sec/PoC-in-GitHub
Powered by Gitea Version: 1.24.6 Page: 93ms Template: 2ms
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API