PHP SplObjectStorage Use-After-Free

Discussion in 'News Aggregator' started by Packet Storm, 9 Aug 2015.

  1. Packet Storm

    Packet Storm Guest

    A use-after-free vulnerability was discovered in unserialize() with SplObjectStorage object's deserialization that can be abused for leaking arbitrary memory blocks or execute arbitrary code remotely.

    Continue reading...
     

Share This Page

Loading...