Skip to content

CVE-2014-0237

The cdf_unpack_summary_info function in cdf.c in the Fileinfo component in PHP before 5.4.29 and 5.5.x before 5.5.13 allows remote attackers to cause a denial of service (performance degradation) by triggering many file_printf calls.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.3070 (30.7%)
Percentile: 96.7%
EPSS: 2026-05-06

Affects

php:phpdebian:debian_linux

Technical description

The cdf_unpack_summary_info function in cdf.c in the Fileinfo component in PHP before 5.4.29 and 5.5.x before 5.5.13 allows remote attackers to cause a denial of service (performance degradation) by triggering many file_printf calls.

Published: 6/1/2014, 4:29:34 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam