CVE-2022-31627

In PHP versions 8.1.x below 8.1.8, when fileinfo functions, such as finfo_buffer, due to incorrect patch applied to the third party code from libmagic, incorrect function may be used to free allocated memory, which may lead to heap corruption.
CVSS

No CVSS.

References
Configurations

No configuration.

Information

Published : 2022-07-28 06:15

Updated : 2022-07-28 12:04


NVD link : CVE-2022-31627

Mitre link : CVE-2022-31627


JSON object : View

Products Affected

No product.

CWE

No CWE.