Description
The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a -8 size value.
Remediation
References
Related Vulnerabilities
MySQL CVE-2014-2484 Vulnerability (CVE-2014-2484)
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Directory Traversal (4.9.9)
MySQL CVE-2013-3801 Vulnerability (CVE-2013-3801)
Joomla! Core Multiple Vulnerabilities (2.5.0 - 3.10.6)
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2022-42127)