RULE(RULE ID:338564)

Rule General Information
Release Date: 2024-11-26
Rule Name: Symphony Environment Variable Modification Vulnerability (CVE-2024-50340 CVE-2024-52301)
Severity:
CVE ID:
Rule Protection Details
Description: Symphony environment variable modification vulnerability (cve-2024-50340, cve-2024-52301).
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: https://github.com/symfony/symfony/commit/a77b308c3f179ed7c8a8bc295f82b2d6ee3493fa
https://github.com/symfony/symfony/security/advisories/GHSA-x8vp-gf4q-mw5j
https://nvd.nist.gov/vuln/detail/CVE-2024-50340
Solutions
Refer to the announcement or patch by the vendor: https://github.com/symfony/symfony/security/advisories/GHSA-x8vp-gf4q-mw5j