Description
An issue was discovered in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. An Integer Overflow leads to a heap-based buffer over-read in exif_thumbnail_extract of exif.c.
Remediation
References
Related Vulnerabilities
WordPress Plugin Social Media Widget by Acurax Cross-Site Scripting (2.2)
WordPress Plugin Translate WordPress-Google Language Translator Cross-Site Scripting (6.0.9)
WordPress Other Vulnerability (CVE-2007-1244)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-0217)
WordPress Plugin Filter Custom Fields & Taxonomies Light Unspecified Vulnerability (1.04)