PHP Improper Input Validation Vulnerability - CVE-2016-3185 - Vulnerability Database

PHP Improper Input Validation Vulnerability - CVE-2016-3185

High
Reference: CVE-2016-3185
Title: PHP Improper Input Validation Vulnerability
Overview:

The make_http_soap_request function in ext/soap/php_http.c in PHP before 5.4.44 5.5.x before 5.5.28 5.6.x before 5.6.12 and 7.x before 7.0.4 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (type confusion and application crash) via crafted serialized _cookies data related to the SoapClient::__call method in ext/soap/soap.c.