Description
The odbc_bindcols function in ext/odbc/php_odbc.c in PHP before 5.6.12 mishandles driver behavior for SQL_WVARCHAR columns, which allows remote attackers to cause a denial of service (application crash) in opportunistic circumstances by leveraging use of the odbc_fetch_array function to access a certain type of Microsoft SQL Server table.
Remediation
References
Related Vulnerabilities
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Scripting (2.9.7)
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.17)
WordPress Plugin PIKLIST-Rapid development framework Cross-Site Scripting (0.9.4.25)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-2853)