Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2010-06-24 05:30
Updated : 2017-08-16 18:32
NVD link : CVE-2010-2225
Mitre link : CVE-2010-2225
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
php
- php