CVE-2024-11235

Public on 2025-03-18
Modified on 2025-03-18
Description
NOTE:
http://github.com/php/php-src/security/advisories/GHSA-rwp7-7vc6-8477
http://www.tenable.com/cve/CVE-2024-11235

Version
This vulnerability is present only in PHP 8.3+. The PHP 8.2 and versions before are not impacted.()
Severity
Important severity
Important
CVSS v3 Base Score
7.3
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
HAQM Linux 2 - Core php Not Affected
HAQM Linux 2 - Php8.2 Extra php Not Affected
HAQM Linux 1 php56 Not Affected
HAQM Linux 2023 php8.1 Not Affected
HAQM Linux 2023 php8.2 Not Affected
HAQM Linux 2023 php8.3 2025-03-26 ALAS2023-2025-922 Fixed

CVSS Scores

Score Type Score Vector
HAQM Linux CVSSv3 7.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L