Description
The exif_process_IFD_in_JPEG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not validate IFD sizes, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via crafted header data.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Backup and Migrate-Backup Guard Arbitrary File Upload (1.5.9)
Sqlite Improper Validation of Array Index Vulnerability (CVE-2022-35737)
WordPress Plugin Trashbin 'mtb_undelete' Parameter Cross-Site Scripting (0.1)
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2017-15710)
WordPress Plugin WordPress Leads Unspecified Vulnerability (1.6.8)