REDHAT-BUG-2356041: Medium severity PHP PHP vulnerability
In PHP from 8.1. before 8.1.32, from 8.2. before 8.2.28, from 8.3. before 8.3.19, from 8.4. before 8.4.5, when user-supplied headers are sent, the insufficient validation of the end-of-line characters may prevent certain headers from being sent or lead to certain headers be misinterpreted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2356041?
REDHAT-BUG-2356041 is classified as a moderate severity vulnerability due to its potential impact on header validation.
How do I fix REDHAT-BUG-2356041?
To fix REDHAT-BUG-2356041, upgrade PHP to version 8.1.32 or later, 8.2.28 or later, 8.3.19 or later, or 8.4.5 or later.
What products are affected by REDHAT-BUG-2356041?
REDHAT-BUG-2356041 affects PHP versions prior to 8.1.32, 8.2.28, 8.3.19, and 8.4.5.
Can REDHAT-BUG-2356041 lead to security issues?
Yes, REDHAT-BUG-2356041 can lead to security issues related to the misinterpretation of user-supplied headers.
Is there a workaround for REDHAT-BUG-2356041?
Currently, the recommended approach is to upgrade to a patched version of PHP, as there are no specific workarounds for REDHAT-BUG-2356041.