PHP 5.6.9 Use-After-Free...

- AV AC AU C I A
发布: 2015-06-10
修订: 2025-04-13

High-Tech Bridge Security Research Lab discovered use-after-free vulnerability in a popular programming language PHP, which can be exploited to cause crash and possibly execute arbitrary code on the target system. The vulnerability resides within the 'spl_heap_object_free_storage()' PHP function when trying to dereference already freed memory. A local attacker can cause segmentation fault or possibly execute arbitrary code on the target system with privileges of webserver.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息