CVE-2010-1862: Infoleak
The chunksplit function in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to obtain sensitive information (memory contents) by causing a userspace interruption of an internal function, related to the call time pass by reference feature.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1862?
CVE-2010-1862 is classified as a medium severity vulnerability.
How do I fix CVE-2010-1862?
To fix CVE-2010-1862, upgrade your PHP installation to version 5.2.14 or later for the affected 5.2.x versions.
Which versions of PHP are affected by CVE-2010-1862?
CVE-2010-1862 affects PHP versions 5.2.0 to 5.2.13 and 5.3.0 to 5.3.2.
What kind of impact can CVE-2010-1862 have on a system?
CVE-2010-1862 may allow attackers to access sensitive information from memory, potentially leading to data exposure.
Is CVE-2010-1862 a remote vulnerability?
CVE-2010-1862 is a context-dependent elevation vulnerability that may require exploitation through specific user actions.