发布时间: 2023年9月9日
修改时间: 2024年10月31日
In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, excessive number of parts in HTTP form upload can cause high resource consumption and excessive number of log entries. This can cause denial of service on the affected server by exhausting CPU resources or disk space.
NVD | openEuler | |
---|---|---|
Confidentiality | None | None |
Attack Vector | Network | Network |
CVSS评分 | 7.5 | 7.5 |
Attack Complexity | Low | Low |
Privileges Required | None | None |
Scope | Unchanged | Unchanged |
Integrity | None | None |
User Interaction | None | None |
Availability | High | High |
公告名 | 概要 | 发布时间 |
---|---|---|
KylinSec-SA-2023-1664 | php security update | 2024年10月31日 |
KylinSec-SA-2023-1665 | php security update | 2024年10月31日 |
KylinSec-SA-2023-2262 | php security update | 2024年10月31日 |
产品 | 包 | 状态 |
---|---|---|
KY3.4-4A | php | Fixed |
KY3.5.2 | php | Fixed |
KY3.4-5A | php | Fixed |
KY3.5.1 | php | Fixed |