Security Advisory

CVE-2016-7479

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-01-12 00:00:00
Last updated 2024-08-06 01:57:47
Assigner checkpoint
CVSS score not scored
State PUBLISHED

Description

In all versions of PHP 7, during the unserialization process, resizing the 'properties' hash table of a serialized object may lead to use-after-free. A remote attacker may exploit this bug to gain arbitrary code execution.