First published: Tue Feb 14 2023(Updated: )
Fixed bug GHSA-54hq-v5wp-fqgv (DOS vulnerability when parsing multipart request body). (CVE-2023-0662)
Credit: security@php.net security@php.net
Affected Software | Affected Version | How to fix |
---|---|---|
PHP PHP | >=8.0.0<8.0.28 | |
PHP PHP | >=8.1.0<8.1.16 | |
PHP PHP | >=8.2.0<8.2.3 | |
PHP PHP | <8.0.28 | 8.0.28 |
debian/php7.4 | 7.4.33-1+deb11u5 7.4.33-1+deb11u7 | |
debian/php8.2 | 8.2.26-1~deb12u1 8.2.27-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0662 refers to a fixed bug in PHP that caused a DOS vulnerability when parsing multipart request body.
CVE-2023-0662 affects PHP versions up to and excluding 8.0.28.
The severity of CVE-2023-0662 is not mentioned in the provided information.
To fix CVE-2023-0662, upgrade PHP to version 8.0.28 or higher.
More information about CVE-2023-0662 can be found at the following reference link: https://www.php.net/ChangeLog-8.php#8.0.28