CVE-2020-7063 | PHP up to 7.2.27/7.3.14/7.4.2 Phar Archive buildFromIterator permissions (Bug 79082)
A vulnerability, which was classified as critical, was found in PHP up to 7.2.27/7.3.14/7.4.2. This affects the function PharData::buildFromIterator of the component Phar Archive Handler. The manipulation leads to preservation of permissions.
This vulnerability is uniquely identified as CVE-2020-7063. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.