Security Advisory

CVE-2010-2225

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-06-23 18:00:00
Last updated 2024-08-07 02:25:07
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function.