← Back

CVE-2010-1915

nvd nist
Published: May 12, 2010Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The preg_quote function in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to obtain sensitive information (memory contents) by causing a userspace interruption of an internal function, related to the call time pass by reference feature, modification of ZVALs whose values are not updated in the associated local variables, and access of previously-freed memory.

Affected (16)

Products: Php: Php
1 product
Php
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Php
Version 5.2.0
Version 5.2.10
Version 5.2.11
Version 5.2.12
Version 5.2.1
Version 5.2.2
Version 5.2.3
Version 5.2.4
Version 5.2.5
Version 5.2.6
Version 5.2.7
Version 5.2.8
Version 5.2.9
Version 5.3.0
Version 5.3.1
Version 5.3.2

Timeline

No history available yet.