VulnerabilityModified
CVE-2022-31630
This can lead to crashes or disclosure of confidential information.
HIGH 7.1EPSS 2.20%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.20%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In PHP versions prior to 7.4.33, 8.0.25 and 8.1.12, when using imageloadfont() function in gd extension, it is possible to supply a specially crafted font file, such as if the loaded font is used with imagechar() function, the read outside allocated buffer will be used. This can lead to crashes or disclosure of confidential information.
- CVSS 3.1
- 7.1 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
- EPSS
- 2.20% probability · 82th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-131, CWE-190, CWE-125
- Affected
- php/php
- Source
- security@php.net
References
- https://bugs.php.net/bug.php?id=81739Exploit, Issue Tracking, Patch, Vendor Advisory
- https://bugs.php.net/bug.php?id=81739Exploit, Issue Tracking, Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.