The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (stack exhaustion and PHP crash) via deeply nested arrays, which trigger deep recursion in the variable destruction routines.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-03-06 12:19
Updated : 2018-10-30 09:25
NVD link : CVE-2007-1285
Mitre link : CVE-2007-1285
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
zend
- engine
php
- php