PHP SPL ArrayObject Use-After-Free

Discussion in 'News Aggregator' started by Packet Storm, 9 Aug 2015.

  1. Packet Storm

    Packet Storm Guest

    A use-after-free vulnerability was discovered in unserialize() with SPL ArrayObject object's deserialization that can be abused for leaking arbitrary memory blocks or execute arbitrary code remotely.

    Continue reading...
     

Share This Page

Loading...