CVE-2016-5873

m6w6/ext-http
on github

Published

Severity

CVSS v3:
9.8 CRITICAL
CVSS v2:
7.5 HIGH

Description

Buffer overflow in the HTTP URL parsing functions in pecl_http before 3.0.1 might allow remote attackers to execute arbitrary code via non-printable characters in a URL.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:php:pecl_http:*:rc1:*:*:*:*:*:*n/a3.0.1 (including)*

External Links