← Back

CVE-2010-1914

nvd nist
Published: May 12, 2010Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The Zend Engine in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to obtain sensitive information by interrupting the handler for the (1) ZEND_BW_XOR opcode (shift_left_function), (2) ZEND_SL opcode (bitwise_xor_function), or (3) ZEND_SR opcode (shift_right_function), related to the convert_to_long_base function.

Affected (16)

Products: Php: Php
1 product
Php
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Php
Version 5.2.0
Version 5.2.10
Version 5.2.11
Version 5.2.12
Version 5.2.1
Version 5.2.2
Version 5.2.3
Version 5.2.4
Version 5.2.5
Version 5.2.6
Version 5.2.7
Version 5.2.8
Version 5.2.9
Version 5.3.0
Version 5.3.1
Version 5.3.2

References (12)

Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.