ID:4429 - Exploit for Resource management error in PHP - CVE-2011-1468

 
Main Vulnerability Database Exploits ID:4429 - Exploit for Resource management error in PHP - CVE-2011-1468

ID:4429 - Exploit for Resource management error in PHP - CVE-2011-1468

Published: August 11, 2020


Vulnerability identifier: #VU45187
Vulnerability risk: Medium
CVE-ID: CVE-2011-1468
CWE-ID: CWE-399
Exploitation vector: Remote access
Vulnerable software:
PHP

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to perform service disruption.

Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of service (memory consumption) via (1) plaintext data to the openssl_encrypt function or (2) ciphertext data to the openssl_decrypt function.


Remediation

Install update from vendor's website.