Multiple use-after-free vulnerabilities in SPL in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 allow remote attackers to execute arbitrary code via vectors involving (1) ArrayObject, (2) SplObjectStorage, and (3) SplDoublyLinkedList, which are mishandled during unserialization.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-01-19 05:59
Updated : 2017-11-04 01:29
NVD link : CVE-2015-6831
Mitre link : CVE-2015-6831
JSON object : View
Products Affected
php
- php
CWE
