
ISC StormCast for Monday, March 28th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
I've Got an Interesting Volnability in P Hp That Hasn't Been Patched Yet
An interesting volnability in p hp that has not been patched yet and appears to be quite easy to exploit. There is no patch available at this point from p h b gordy, who published ha blocg post states that they haven't responded yet to any of the buck reports submitted. A length field used signed instead of an unsigned variable, which then leads to a heap overflow.
Play episode from 02:39
Transcript


