Rewterz
Zero-Day Vulnerabilities in Microsoft Web Browsers
March 30, 2019
Rewterz
Rewterz Threat Alert – Cardinal Data-Themed Domain Observed Delivering AdWare
April 1, 2019

Rewterz Threat Advisory – PHP “exif_process_IFD_in_MAKERNOTE()” Out-Of-Bounds Denial of Service Vulnerability

Analysis Summary

An error within the “exif_process_IFD_in_MAKERNOTE()” function (ext/exif/exif.c) can be exploited to cause an out-of-bounds read memory access.

Impact

Denial of Service

Affected Vendors

PHP Group

Affected Products

PHP 7.1.27

Remediation

Vendor has the patched released.

Download this patch