Description
The dl function in PHP 5.2.4 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a long string in the library parameter. NOTE: there are limited usage scenarios under which this would be a vulnerability.
Remediation
References
Related Vulnerabilities
WordPress Plugin SodaHead Polls Multiple Cross-Site Scripting Vulnerabilities (2.0.2)
WordPress Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2009-3890)
MySQL CVE-2019-2537 Vulnerability (CVE-2019-2537)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2687)