Wednesday, November 20, 2019

New vulnerability on the NVD: CVE-2010-4657 (debian_linux, enterprise_linux, php)

PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.

Published at: November 13, 2019 at 11:15PM
View on website

No comments:

Post a Comment