Description
Integer overflow in the ftp_genlist function in ext/ftp/ftp.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 allows remote FTP servers to execute arbitrary code via a long reply to a LIST command, leading to a heap-based buffer overflow.
Remediation
References
Related Vulnerabilities
WordPress Plugin Floating Tweets Multiple Vulnerabilities (1.0.1)
WordPress Plugin Spotlight Social Feeds [Block, Shortcode, and Widget] Cross-Site Scripting (1.4.2)
SharePoint Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-31950)
WordPress Plugin Maps Widget for Google Maps-Google Maps Builder Security Bypass (4.16)