Multiple use-after-free vulnerabilities in SPL in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 allow remote attackers to execute arbitrary code via vectors involving (1) ArrayObject, (2) SplObjectStorage, and (3) SplDoublyLinkedList, which are mishandled during unserialization.
References
Configurations
History
No history.
Information
Published : 2016-01-19 05:59
Updated : 2023-11-07 02:27
NVD link : CVE-2015-6831
Mitre link : CVE-2015-6831
CVE.ORG link : CVE-2015-6831
JSON object : View
Products Affected
debian
- debian_linux
php
- php
CWE
CWE-416
Use After Free