Description
The dl function in PHP 5.2.4 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a long string in the library parameter. NOTE: there are limited usage scenarios under which this would be a vulnerability.
Remediation
References
Related Vulnerabilities
WordPress 5.0.x PHP Object Injection (5.0 - 5.0.12)
WordPress Plugin WordPress Alipay/Tenpay/PayPal Cross-Site Scripting (3.6.0)
phpMyAdmin Other Vulnerability (CVE-2007-0204)
Serendipity Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-8101)
WordPress Plugin Google Forms Unspecified Vulnerability (0.93)