Security Advisory

CVE-2015-8878

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-05-22 01:00:00
Last updated 2024-09-17 01:01:58
Assigner mitre
State PUBLISHED

Description

main/php_open_temporary_file.c in PHP before 5.5.28 and 5.6.x before 5.6.12 does not ensure thread safety, which allows remote attackers to cause a denial of service (race condition and heap memory corruption) by leveraging an application that performs many temporary-file accesses.