CVE

Id
89960  
CVE No.
CVE-2016-3141  
Status
Candidate  
Description
Use-after-free vulnerability in wddx.c in the WDDX extension in PHP before 5.5.33 and 5.6.x before 5.6.19 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact by triggering a wddx_deserialize call on XML data containing a crafted var element.  
Phase
Assigned (20160313)  
Votes
None (candidate not yet proposed)  
Comments