CVE-2024-8928

Public on 2024-10-12
Modified on 2024-10-12
Description
php: Erroneous parsing of multipart form data
Severity
Medium severity
Medium
CVSS v3 Base Score
5.3
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
Amazon Linux 1 php No Fix Planned
Amazon Linux 2 - Core php Pending Fix
Amazon Linux 2 - Php8.1 Extra php Pending Fix
Amazon Linux 2 - Php8.2 Extra php Pending Fix
Amazon Linux 2023 php8.1 2025-02-12 ALAS2023-2025-845 Fixed
Amazon Linux 2023 php8.2 Pending Fix
Amazon Linux 2023 php8.3 Pending Fix

CVSS Scores

Score Type Score Vector
Amazon Linux CVSSv3 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N