Description
Heap-based buffer overflow in the enchant_broker_request_dict function in ext/enchant/enchant.c in PHP before 5.4.38, 5.5.x before 5.5.22, and 5.6.x before 5.6.6 allows remote attackers to execute arbitrary code via vectors that trigger creation of multiple dictionaries.
Remediation
References
Related Vulnerabilities
WordPress Plugin Duplicator-WordPress Migration Cross-Site Request Forgery (1.1.2)
WordPress Plugin AdPlugg WordPress Ad Cross-Site Scripting (1.1.33)
Django URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-7234)
WordPress Plugin WordPress Simple Shop Cross-Site Scripting (1.2)