First published: Wed Oct 06 2010(Updated: )
PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
PHP PHP | >=5.0.0<5.4.4 | |
Redhat Enterprise Linux | =6.0 | |
Redhat Enterprise Linux | =5.0 | |
Debian Debian Linux | =8.0 | |
debian/php5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.