Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
PHP-FPM fpm_log.c memory leak and buffer overflow
Jan 25 2016 03:50PM
Imre RAD (imre rad search-lab hu)
The FastCGI Process Manager (FPM) SAPI of PHP was vulnerable to memory
leak and buffer overflow in the access logging feature.
PHP-FPM offers customization of the access log lines based on format
string variables which can be specified with the access.format option of
the FPM configuration file.
[ more ]
Copyright 2010, SecurityFocus