The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependent attackers to cause a denial of service (crash) via an invalid size argument, which triggers a NULL pointer dereference.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php | Php | 5.3.5 (including) | 5.3.5 (including) |
Php5 | Ubuntu | lucid | * |
Php5 | Ubuntu | maverick | * |
Php5 | Ubuntu | natty | * |
Php5 | Ubuntu | upstream | * |