CVE Vulnerabilities

CVE-2010-4150

Published: Dec 07, 2010 | Modified: Sep 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
3.6 N/A
AV:L/AC:L/Au:N/C:N/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

Double free vulnerability in the imap_do_open function in the IMAP extension (ext/imap/php_imap.c) in PHP 5.2 before 5.2.15 and 5.3 before 5.3.4 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Php Php 5.2.0 (including) 5.2.0 (including)
Php Php 5.2.1 (including) 5.2.1 (including)
Php Php 5.2.2 (including) 5.2.2 (including)
Php Php 5.2.3 (including) 5.2.3 (including)
Php Php 5.2.4 (including) 5.2.4 (including)
Php Php 5.2.10 (including) 5.2.10 (including)
Php Php 5.2.11 (including) 5.2.11 (including)
Php Php 5.2.12 (including) 5.2.12 (including)
Php Php 5.2.13 (including) 5.2.13 (including)
Php Php 5.2.14 (including) 5.2.14 (including)
Php Php 5.3.0 (including) 5.3.0 (including)
Php Php 5.3.1 (including) 5.3.1 (including)
Php Php 5.3.2 (including) 5.3.2 (including)
Php Php 5.3.3 (including) 5.3.3 (including)
Php-imap Ubuntu dapper *
Php-imap Ubuntu hardy *
Php-imap Ubuntu karmic *
Php-imap Ubuntu lucid *
Php-imap Ubuntu maverick *
Php-imap Ubuntu natty *
Php-imap Ubuntu oneiric *
Php-imap Ubuntu quantal *
Php-imap Ubuntu raring *
Php-imap Ubuntu saucy *
Php-imap Ubuntu upstream *
Php5 Ubuntu dapper *
Php5 Ubuntu devel *
Php5 Ubuntu esm-infra-legacy/trusty *
Php5 Ubuntu hardy *
Php5 Ubuntu karmic *
Php5 Ubuntu lucid *
Php5 Ubuntu maverick *
Php5 Ubuntu natty *
Php5 Ubuntu oneiric *
Php5 Ubuntu precise *
Php5 Ubuntu quantal *
Php5 Ubuntu raring *
Php5 Ubuntu saucy *
Php5 Ubuntu trusty *
Php5 Ubuntu trusty/esm *
Php5 Ubuntu upstream *

References