Back to search
CVE-2010-4657
Published: Nov 13, 2019
Modified: Aug 7, 2024
PUBLISHED
Description
PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.
| Vendor | Product | Versions |
|---|---|---|
php5 | php5 | affected before 5.4.4 |
References
https://security-tracker.debian.org/tracker/CVE-2010-4657
x_refsource_MISC
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4657
x_refsource_MISC
https://access.redhat.com/security/cve/cve-2010-4657
x_refsource_MISC
https://bugs.launchpad.net/php/%2Bbug/655442
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now