Description
Zend/zend_exceptions.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 does not validate certain Exception objects, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or trigger unintended method execution via crafted serialized data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-875-1 | php5 security update |
Ubuntu USN |
USN-3045-1 | PHP vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T08:29:22.110Z
Reserved: 2016-05-21T00:00:00.000Z
Link: CVE-2015-8876
No data.
Status : Deferred
Published: 2016-05-22T01:59:07.697
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-8876
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Ubuntu USN