PT-2014-2040 · Php+2 · Php+2

Bugreports At Internot Dot Info

·

Published

2014-12-30

·

Updated

2022-08-04

·

CVE-2014-9425

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions PHP versions prior to 5.5.21 PHP versions 5.6.x through 5.6.4
Description The issue is related to a double free vulnerability in the zend ts hash graceful destroy function, which can be exploited by remote attackers to cause a denial of service or possibly have other unspecified impacts.
Recommendations For PHP versions prior to 5.5.21, update to version 5.5.21 or later. For PHP versions 5.6.x through 5.6.4, update to version 5.6.5 or later.

Fix

Double Free

Weakness Enumeration

Related Identifiers

BDU:2022-02644
CESA-2015_1218
CVE-2014-9425
MGASA-2015-0040
RHSA-2015:1218
RHSA-2015_1218

Affected Products

Centos
Php
Red Hat