CVE-2022-29528: Critical severity Misp Misp vulnerability
Published Apr 20, 2022
·Updated
An issue was discovered in MISP before 2.4.158. PHAR deserialization can occur.
Affected Software
2 affected components
Misp Misp<2.4.158
Misp-project Misp<2.4.158
Remediation
Event History
Apr 20, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-29528.
2
What is the severity of CVE-2022-29528?
The severity of CVE-2022-29528 is critical with a CVSS score of 9.8.
3
What is the affected software version?
The affected software version is MISP before 2.4.158.
4
What is the description of CVE-2022-29528?
CVE-2022-29528 is an issue in MISP before 2.4.158 where PHAR deserialization can occur.
5
How do I fix CVE-2022-29528?
To fix CVE-2022-29528, update MISP to version 2.4.158 or higher.