PHP Shared Memory Module Offset...

- AV AC AU C I A
发布: 2004-12-20
修订: 2025-04-13

PHP shared memory module (shmop) is reported prone to an integer handling vulnerability. The issue exists in the PHP_FUNCTION(shmop_write) function and is as a result of a lack of sufficient sanitization performed on 'offset' data. This vulnerability may be exploited to make an almost arbitrary write into process memory. It is reported that the vulnerability may be leveraged to disable PHP 'safe mode', this may result in further compromise in a shared-server environment.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息