Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-5340
HistoryJan 11, 2017 - 6:59 a.m.

Integer overflow

2017-01-1106:59:00
PRIOn knowledge base
www.prio-n.com
3

9.6 High

AI Score

Confidence

High

0.487 Medium

EPSS

Percentile

97.5%

Zend/zend_hash.c in PHP before 7.0.15 and 7.1.x before 7.1.1 mishandles certain cases that require large array allocations, which allows remote attackers to execute arbitrary code or cause a denial of service (integer overflow, uninitialized memory access, and use of arbitrary destructor function pointers) via crafted serialized data.

CPENameOperatorVersion
phpge7.1.0
phplt7.1.1
phpge7.0.0
phplt7.0.15