Name | CVE-2019-11048 |
Description | In PHP versions 7.2.x below 7.2.31, 7.3.x below 7.3.18 and 7.4.x below 7.4.6, when HTTP file uploads are allowed, supplying overly long filenames or field names could lead PHP engine to try to allocate oversized memory storage, hit the memory limit and stop processing the request, without cleaning up temporary files created by upload request. This potentially could lead to accumulation of uncleaned temporary files exhausting the disk space on the target server. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DLA-2261-1, DSA-4717-1, DSA-4719-1, ELA-231-1 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
php5 (PTS) | jessie, jessie (lts) | 5.6.40+dfsg-0+deb8u21 | fixed |
php7.0 (PTS) | stretch (security) | 7.0.33-0+deb9u12 | fixed |
stretch (lts), stretch | 7.0.33-0+deb9u19 | fixed | |
php7.3 (PTS) | buster, buster (lts) | 7.3.31-1~deb10u8 | fixed |
buster (security) | 7.3.31-1~deb10u7 | fixed | |
php7.4 (PTS) | bullseye | 7.4.33-1+deb11u5 | fixed |
bullseye (security) | 7.4.33-1+deb11u7 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
php5 | source | wheezy | 5.4.45-0+deb7u30 | ELA-231-1 | ||
php5 | source | jessie | 5.6.40+dfsg-0+deb8u12 | DLA-2261-1 | ||
php5 | source | (unstable) | (unfixed) | |||
php7.0 | source | stretch | 7.0.33-0+deb9u8 | DSA-4717-1 | ||
php7.0 | source | (unstable) | (unfixed) | |||
php7.3 | source | buster | 7.3.19-1~deb10u1 | DSA-4719-1 | ||
php7.3 | source | (unstable) | (unfixed) | |||
php7.4 | source | (unstable) | 7.4.9-1 |
Fixed in PHP 7.2.31, 7.3.18, 7.4.6
PHP Bug: https://bugs.php.net/78875
PHP Bug: https://bugs.php.net/78876
https://github.com/php/php-src/commit/f43041250f82ed69bd4575655984fbfc842da266
https://github.com/php/php-src/commit/1c9bd513ac5c7c1d13d7f0dfa7c16a7ad2ce0f87
php-7.4: https://github.com/php/php-src/commit/a3924ab6542a358a3099de992b63b932a9570add
php-7.3: https://github.com/php/php-src/commit/f43041250f82ed69bd4575655984fbfc842da266
php-7.2: https://github.com/php/php-src/commit/f43041250f82ed69bd4575655984fbfc842da266
php-7.2: https://github.com/php/php-src/commit/1c9bd513ac5c7c1d13d7f0dfa7c16a7ad2ce0f87