Lucene search

K
f5F5F5:K43449212
HistoryAug 12, 2016 - 12:00 a.m.

K43449212 : PHP vulnerability CVE-2016-5096

2016-08-1200:00:00
my.f5.com
91

8.2 High

AI Score

Confidence

Low

0.06 Low

EPSS

Percentile

93.5%

Security Advisory Description

Integer overflow in the fread function in ext/standard/file.c in PHP before 5.5.36 and 5.6.x before 5.6.22 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large integer in the second argument. (CVE-2016-5096)
Impact
BIG-IP and BIG-IQ software contain the vulnerable code. However, BIG-IP and BIG-IQ systems do not use the vulnerable code in a way that exposes the vulnerability in a standard, default configuration. When the system is exploited, a remote attacker can cause a denial-of-service (DoS) attack, affecting the BIG-IP and BIG-IQ Configuration utility.