Use-after-free vulnerability in the add_post_var function in the Posthandler component in PHP 5.6.x before 5.6.1 might allow remote attackers to execute arbitrary code by leveraging a third-party filter extension that accesses a certain ksep value.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2020-02-19T12:46:23
Updated: 2024-08-06T10:50:17.792Z
Reserved: 2014-05-14T00:00:00
Link: CVE-2014-3622
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-02-19T13:15:10.510
Modified: 2024-11-21T02:08:31.450
Link: CVE-2014-3622
Redhat