Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11047
HistoryJan 15, 2019 - 8:56 a.m.

Denial Of Service (DoS)

2019-01-1508:56:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.614 Medium

EPSS

Percentile

97.8%

php is vulnerable to denial of service (DoS) attacks. The vulnerability exists as ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a crafted document that is processed by the xml_parse_into_struct function.

References