Description
Integer overflow in the str_pad function in ext/standard/string.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a long string, leading to a heap-based buffer overflow.
Remediation
References
Related Vulnerabilities
Coppermine Improper Authentication Vulnerability (CVE-2005-3979)
WordPress Plugin Content Blocks (Custom Post Widget) Local File Inclusion (3.3.0)
WordPress Plugin Companion Revision Manager-Revision Control Unspecified Vulnerability (1.3)
WordPress Plugin PropertyHive Remote Code Execution (1.4.25)