PHP 'main/php_ini.c' Denial of Service Vulnerability



PHP is prone to a denial-of-service vulnerability.

An attacker may exploit this issue to crash the affected application, resulting in a denial-of-service condition.

PHP 7.1.5 is vulnerable; other versions may also be affected.

Information

Bugtraq ID: 99003
Class: Boundary Condition Error
CVE:
Remote: Yes
Local: No
Published: Jun 12 2017 12:00AM
Updated: Jun 12 2017 12:00AM
Credit: stephan
Vulnerable: PHP PHP 7.1.5


Not Vulnerable: PHP PHP 7.1.6


Exploit


The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.


Related Posts