Integer overflow in PHP 5 up to 5.1.6 and 4 before 4.3.0 allows remote attackers to execute arbitrary code via an argument to the unserialize PHP function with a large value for the number of array elements, which triggers the overflow in the Zend Engine ecalloc function (Zend/zend_alloc.c).
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade php5-nmsUpgrade php5-hordeUpgrade php5-cliUpgrade php5-dtcUpgrade php5-cgiUpgrade mod_php5Upgrade php5 | Dec 10, 2025 | Oct 6, 2006 |
| Gentoo Linux | — | Upgrade dev-lang/php. | Oct 30, 2017 | Oct 10, 2006 |
| Php | — | Upgrade to PHP version 4.3.0 | Oct 1, 2012 | Oct 10, 2006 |
| Suse | — | Upgrade php5-suhosin | Feb 17, 2015 | Oct 10, 2006 |
| Ubuntu | — | Upgrade php5-cgiUpgrade libapache2-mod-php5Upgrade libapache2-mod-php4Upgrade php5-cliUpgrade php4-cliUpgrade php4-cgi | Nov 8, 2024 | Oct 10, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub