Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11490
HistoryJan 15, 2019 - 9:02 a.m.

Denial Of Service (DoS)

2019-01-1509:02:49
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.009 Low

EPSS

Percentile

82.3%

php55-php is vulnerable to denial of service (DoS) attacks. The vulnerability exists as the cdf_read_short_sector function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted CDF file.

References