Intrusion Prevention

PHP.Fileinfo.cdf_read_property_info.DoS

Description

This indicates an attack attempt to exploit a Denial Of Service vulnerability in PHP.
The vulnerability is due to an error in the application when handling CDF files. A remote attacker may be able exploit this to cause a denial of service condition in the affected application.

Affected Products

PHP Group PHP prior to 5.6.0
PHP Group PHP prior to 5.5.16
PHP Group PHP prior to 5.4.32

Impact

Denial of Service: Remote attackers can crash vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor
http://php.net/ChangeLog-5.php#5.6.0

CVE References

CVE-2014-3587