6.4
CVSSv2

CVE-2010-1861

Published: 07/05/2010 Updated: 10/05/2010
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The sysvshm extension for PHP 5.2 up to and including 5.2.13 and 5.3 up to and including 5.3.2 allows context-dependent malicious users to write to arbitrary memory addresses by using an object's __sleep function to interrupt an internal call to the shm_put_var function, which triggers access of a freed resource.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 5.2.0

php php 5.2.8

php php 5.2.2

php php 5.2.3

php php 5.2.4

php php 5.2.5

php php 5.2.11

php php 5.2.12

php php 5.2.13

php php 5.2.10

php php 5.2.1

php php 5.2.6

php php 5.2.9

php php 5.3.0

php php 5.3.2

php php 5.3.1