PHP re-exploitation after release Vulnerability (CVE-2016-8616)
PHP re-exploitation after release Vulnerability (CVE-2016-8616)
Release date:
Updated on:
Affected Systems:
PHP 7.x <7.0.1
Description:
CVE (CAN) ID: CVE-2016-8616
PHP is a widely used scripting language. It is especially suitable for Web development and can be embedded into HTML.
In 7.x versions earlier than PHP 7.0.1, the collator: sortWithSortKeys function in ext/intl/Collator/collator_sort.c has the post-release Reuse Vulnerability. Remote attackers exploit the key buffer and the relationship between damaged arrays to cause DOS.
<* Source: OpenSSH
*>
Suggestion:
Vendor patch:
PHP
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://bugs.php.net/bug.php? Id = 71020
Http://www.php.net/ChangeLog-7.php
This article permanently updates the link address: