Security
Headlines
HeadlinesLatestCVEs

Tag

#ssrf

CVE-2016-4343: PHP: PHP 7 ChangeLog

The phar_make_dirstream function in ext/phar/dirstream.c in PHP before 5.6.18 and 7.x before 7.0.3 mishandles zero-size ././@LongLink files, which allows remote attackers to cause a denial of service (uninitialized pointer dereference) or possibly have unspecified other impact via a crafted TAR archive.

CVE
#sql#xss#vulnerability#web#mac#windows#linux#dos#apache#redis#js#git#oracle#wordpress#intel#php#c++#rce#perl#xpath#ldap#ssrf#buffer_overflow#acer#samsung#auth#ibm#dell#postgres#sap#ssl