Missing error check and insufficient random bytes in HTTP Digest authentication for SOAP
Published Jul 22, 2023
4.3
MEDIUMCVSS 3.1
EPSS 0.71%
Description
In PHP versions 8.0.* before 8.0.29, 8.1.* before 8.1.20, 8.2.* before 8.2.7 when using SOAP HTTP Digest Authentication, random value generator was not checked for failure, and was using narrower range of values than it should have. In case of random generator failure, it could lead to a disclosure of 31 bits of uninitialized memory from the client to the server, and it also made easier to a malicious server to guess the client's nonce.
Affected products
-
- Version 8.0.*StatusaffectedConstraints<8.0.29
- Version 8.1.*StatusaffectedConstraints<8.1.20
- Version 8.2.*StatusaffectedConstraints<8.2.7
- Version
No data.
Red Hat Enterprise Linux 8
php:7.4-8100020241113075828.f7998665
Fixed · RHSA-2024:10952
Red Hat Enterprise Linux 8
php:8.0-8080020231006102311.0b4eb31d
Fixed · RHSA-2023:5927
Red Hat Enterprise Linux 9
php-0:8.0.30-1.el9_2
Fixed · RHSA-2023:5926
Red Hat Enterprise Linux 9
php:8.1-9030020231221080340.9
Fixed · RHSA-2024:0387
Red Hat Enterprise Linux 6
php
Out of support scope
Red Hat Enterprise Linux 7
php
Out of support scope
Red Hat Software Collections
rh-php73-php
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | php:7.4-8100020241113075828.f7998665 | Fixed | RHSA-2024:10952 |
| Red Hat Enterprise Linux 8 | php:8.0-8080020231006102311.0b4eb31d | Fixed | RHSA-2023:5927 |
| Red Hat Enterprise Linux 9 | php-0:8.0.30-1.el9_2 | Fixed | RHSA-2023:5926 |
| Red Hat Enterprise Linux 9 | php:8.1-9030020231221080340.9 | Fixed | RHSA-2024:0387 |
| Red Hat Enterprise Linux 6 | php | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | php | Out of support scope | n/a |
| Red Hat Software Collections | rh-php73-php | Will not fix | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (6)
- https://access.redhat.com/security/cve/CVE-2023-3247 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2219290 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-43923 Advisory
- https://github.com/php/php-src/security/advisories/GHSA-76gg-c692-v2mw PatchVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-3247
- https://www.cve.org/CVERecord?id=CVE-2023-3247
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2023-3247 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2219290 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-43923 | Advisory | |
| https://github.com/php/php-src/security/advisories/GHSA-76gg-c692-v2mw | PatchVendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2023-3247 | ||
| https://www.cve.org/CVERecord?id=CVE-2023-3247 |
Change history (0)
No recorded changes yet.