PHP 'unserialize()' Function Use After Free Remote Code Execution Vulnerability

Bugtraq ID: 93577
Class: Failure to Handle Exceptional Conditions
CVE: CVE-2016-9137
Remote: Yes
Local: No
Published: Oct 14 2016 12:00AM
Updated: Mar 07 2017 01:02AM
Credit: taoguangchen
Vulnerable: Ubuntu Ubuntu Linux 14.04 LTS
Ubuntu Ubuntu Linux 12.04 LTS i386
Ubuntu Ubuntu Linux 12.04 LTS amd64
S.u.S.E. openSUSE 13.2
PHP PHP 7.0.5
PHP PHP 7.0.3
PHP PHP 7.0
PHP PHP 7.0.9
PHP PHP 7.0.8
PHP PHP 7.0.7
PHP PHP 7.0.6
PHP PHP 7.0.4
PHP PHP 7.0.2
PHP PHP 7.0.11
PHP PHP 7.0.10
PHP PHP 7.0.1
PHP PHP 7.0
Not Vulnerable: PHP PHP 7.0.12


 

Privacy Statement
Copyright 2010, SecurityFocus