CVE Vulnerabilities

CVE-2009-2626

Published: Dec 01, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The zend_restore_ini_entry_cb function in zend_ini.c in PHP 5.3.0, 5.2.10, and earlier versions allows context-specific attackers to obtain sensitive information (memory contents) and cause a PHP crash by using the ini_set function to declare a variable, then using the ini_restore function to restore the variable.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp*5.2.10 (including)
PhpPhp1.0 (including)1.0 (including)
PhpPhp2.0 (including)2.0 (including)
PhpPhp2.0b10 (including)2.0b10 (including)
PhpPhp3.0 (including)3.0 (including)
PhpPhp3.0.1 (including)3.0.1 (including)
PhpPhp3.0.2 (including)3.0.2 (including)
PhpPhp3.0.3 (including)3.0.3 (including)
PhpPhp3.0.4 (including)3.0.4 (including)
PhpPhp3.0.5 (including)3.0.5 (including)
PhpPhp3.0.6 (including)3.0.6 (including)
PhpPhp3.0.7 (including)3.0.7 (including)
PhpPhp3.0.8 (including)3.0.8 (including)
PhpPhp3.0.9 (including)3.0.9 (including)
PhpPhp3.0.10 (including)3.0.10 (including)
PhpPhp3.0.11 (including)3.0.11 (including)
PhpPhp3.0.12 (including)3.0.12 (including)
PhpPhp3.0.13 (including)3.0.13 (including)
PhpPhp3.0.14 (including)3.0.14 (including)
PhpPhp3.0.15 (including)3.0.15 (including)
PhpPhp3.0.16 (including)3.0.16 (including)
PhpPhp3.0.17 (including)3.0.17 (including)
PhpPhp3.0.18 (including)3.0.18 (including)
PhpPhp4 (including)4 (including)
PhpPhp4.0 (including)4.0 (including)
PhpPhp4.0-beta_4_patch1 (including)4.0-beta_4_patch1 (including)
PhpPhp4.0-beta1 (including)4.0-beta1 (including)
PhpPhp4.0-beta2 (including)4.0-beta2 (including)
PhpPhp4.0-beta3 (including)4.0-beta3 (including)
PhpPhp4.0-beta4 (including)4.0-beta4 (including)
PhpPhp4.0-rc1 (including)4.0-rc1 (including)
PhpPhp4.0-rc2 (including)4.0-rc2 (including)
PhpPhp4.0.0 (including)4.0.0 (including)
PhpPhp4.0.1 (including)4.0.1 (including)
PhpPhp4.0.1-patch1 (including)4.0.1-patch1 (including)
PhpPhp4.0.1-patch2 (including)4.0.1-patch2 (including)
PhpPhp4.0.2 (including)4.0.2 (including)
PhpPhp4.0.3 (including)4.0.3 (including)
PhpPhp4.0.3-patch1 (including)4.0.3-patch1 (including)
PhpPhp4.0.4 (including)4.0.4 (including)
PhpPhp4.0.4-patch1 (including)4.0.4-patch1 (including)
PhpPhp4.0.5 (including)4.0.5 (including)
PhpPhp4.0.6 (including)4.0.6 (including)
PhpPhp4.0.7 (including)4.0.7 (including)
PhpPhp4.0.7-rc1 (including)4.0.7-rc1 (including)
PhpPhp4.0.7-rc2 (including)4.0.7-rc2 (including)
PhpPhp4.0.7-rc3 (including)4.0.7-rc3 (including)
PhpPhp4.0.7-rc4 (including)4.0.7-rc4 (including)
PhpPhp4.1.0 (including)4.1.0 (including)
PhpPhp4.1.1 (including)4.1.1 (including)
PhpPhp4.1.2 (including)4.1.2 (including)
PhpPhp4.2 (including)4.2 (including)
PhpPhp4.2.0 (including)4.2.0 (including)
PhpPhp4.2.1 (including)4.2.1 (including)
PhpPhp4.2.2 (including)4.2.2 (including)
PhpPhp4.2.3 (including)4.2.3 (including)
PhpPhp4.3.0 (including)4.3.0 (including)
PhpPhp4.3.1 (including)4.3.1 (including)
PhpPhp4.3.2 (including)4.3.2 (including)
PhpPhp4.3.3 (including)4.3.3 (including)
PhpPhp4.3.4 (including)4.3.4 (including)
PhpPhp4.3.5 (including)4.3.5 (including)
PhpPhp4.3.6 (including)4.3.6 (including)
PhpPhp4.3.7 (including)4.3.7 (including)
PhpPhp4.3.8 (including)4.3.8 (including)
PhpPhp4.3.9 (including)4.3.9 (including)
PhpPhp4.3.10 (including)4.3.10 (including)
PhpPhp4.3.11 (including)4.3.11 (including)
PhpPhp4.4.0 (including)4.4.0 (including)
PhpPhp4.4.1 (including)4.4.1 (including)
PhpPhp4.4.2 (including)4.4.2 (including)
PhpPhp4.4.3 (including)4.4.3 (including)
PhpPhp4.4.4 (including)4.4.4 (including)
PhpPhp4.4.5 (including)4.4.5 (including)
PhpPhp4.4.6 (including)4.4.6 (including)
PhpPhp4.4.7 (including)4.4.7 (including)
PhpPhp4.4.8 (including)4.4.8 (including)
PhpPhp4.4.9 (including)4.4.9 (including)
PhpPhp5 (including)5 (including)
PhpPhp5.0-rc1 (including)5.0-rc1 (including)
PhpPhp5.0-rc2 (including)5.0-rc2 (including)
PhpPhp5.0-rc3 (including)5.0-rc3 (including)
PhpPhp5.0.0 (including)5.0.0 (including)
PhpPhp5.0.0-beta1 (including)5.0.0-beta1 (including)
PhpPhp5.0.0-beta2 (including)5.0.0-beta2 (including)
PhpPhp5.0.0-beta3 (including)5.0.0-beta3 (including)
PhpPhp5.0.0-beta4 (including)5.0.0-beta4 (including)
PhpPhp5.0.0-rc1 (including)5.0.0-rc1 (including)
PhpPhp5.0.0-rc2 (including)5.0.0-rc2 (including)
PhpPhp5.0.0-rc3 (including)5.0.0-rc3 (including)
PhpPhp5.0.1 (including)5.0.1 (including)
PhpPhp5.0.2 (including)5.0.2 (including)
PhpPhp5.0.3 (including)5.0.3 (including)
PhpPhp5.0.4 (including)5.0.4 (including)
PhpPhp5.0.5 (including)5.0.5 (including)
PhpPhp5.1.0 (including)5.1.0 (including)
PhpPhp5.1.1 (including)5.1.1 (including)
PhpPhp5.1.2 (including)5.1.2 (including)
PhpPhp5.1.3 (including)5.1.3 (including)
PhpPhp5.1.4 (including)5.1.4 (including)
PhpPhp5.1.5 (including)5.1.5 (including)
PhpPhp5.1.6 (including)5.1.6 (including)
PhpPhp5.2.0 (including)5.2.0 (including)
PhpPhp5.2.2 (including)5.2.2 (including)
PhpPhp5.2.4 (including)5.2.4 (including)
PhpPhp5.2.6 (including)5.2.6 (including)
PhpPhp5.2.7 (including)5.2.7 (including)
PhpPhp5.2.8 (including)5.2.8 (including)
PhpPhp5.2.9 (including)5.2.9 (including)
PhpPhp5.3.0 (including)5.3.0 (including)
Php5Ubuntudapper*
Php5Ubuntuhardy*
Php5Ubuntuintrepid*
Php5Ubuntujaunty*
Php5Ubuntukarmic*

References