CVE-2010-4657
13.11.2019, 21:15
PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.Enginsight
Vendor | Product | Version |
---|---|---|
php | php | 5.0.0 ≤ 𝑥 < 5.4.4 |
redhat | enterprise_linux | 5.0 |
redhat | enterprise_linux | 6.0 |
debian | debian_linux | 8.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References