Memory leaks in OpenSSL extension in PHP before 5.3.6 leading to denial of service

Memory leaks in OpenSSL extension in PHP before 5.3.6 leading to denial of service

CVE-2011-1468 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:N/A:P

Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of service (memory consumption) via (1) plaintext data to the openssl_encrypt function or (2) ciphertext data to the openssl_decrypt function.

Learn more about our Web Application Penetration Testing UK.