Description
An issue was discovered in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. An Integer Overflow leads to a heap-based buffer over-read in exif_thumbnail_extract of exif.c.
Remediation
References
Related Vulnerabilities
WordPress Plugin Colorful Categories Cross-Site Request Forgery (2.0.14)
Apache HTTP Server Improper Input Validation Vulnerability (CVE-2016-2161)
Perl Use of Externally-Controlled Format String Vulnerability (CVE-2012-1151)
WordPress Plugin Carousel slideshow 'upload.php' Arbitrary File Upload (3.9)