Description
Integer overflow in the SplFileObject::fread function in spl_directory.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large integer argument, a related issue to CVE-2016-5096.
Remediation
References
Related Vulnerabilities
MySQL CVE-2016-3501 Vulnerability (CVE-2016-3501)
WordPress 6.0.x Multiple Vulnerabilities (6.0 - 6.0.2)
WordPress Plugin Slideshow Gallery LITE Multiple Vulnerabilities (1.5.3)
WordPress Plugin Rent-A-Car TimThumb Arbitrary File Upload (1.0)
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2017-15710)