Pecl http extension Memory Corruption Vulnerability
-
CVE: CVE-2016-7398
-
Version: pecl-http extension up to 2.6.0beta2/3.1.0beta2
-
Severity: Medium
-
Explanation: The function
merge_param()of the file php_http_params.c. Forged http requests can cause memory corruption.