Security Advisory

CVE-2010-4697

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-01-18 19:00:00
Last updated 2024-08-07 03:55:34
Assigner mitre
State PUBLISHED

Description

Use-after-free vulnerability in the Zend engine in PHP before 5.2.15 and 5.3.x before 5.3.4 might allow context-dependent attackers to cause a denial of service (heap memory corruption) or have unspecified other impact via vectors related to use of __set, __get, __isset, and __unset methods on objects accessed by a reference.