Description
Integer overflow in the object_custom function in
ext/standard/var_unserializer.c in PHP before 5.4.34, 5.5.x before 5.5.18,
and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service
(application crash) or possibly execute arbitrary code via an argument to
the unserialize function that triggers calculation of a large length value.
Package
Upstream: | released
(5.4.34, 5.5.18, 5.6.1)
|
Ubuntu 14.04 ESM (Trusty Tahr): | released
(5.5.9+dfsg-1ubuntu4.5)
|
Patches:
Updated: 2019-12-05 18:37:34 UTC (commit dd38ff22974aae499eb50644b9d5a2817483cbdb)