CVE-2010-4657

Publication date

2019-11-13 20:06:56

Family

redhat

State

PUBLISHED

Description

PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.