cve/2016/CVE-2016-3132.md
2024-05-26 14:27:05 +02:00

660 B

CVE-2016-3132

Description

Double free vulnerability in the SplDoublyLinkedList::offsetSet function in ext/spl/spl_dllist.c in PHP 7.x before 7.0.6 allows remote attackers to execute arbitrary code via a crafted index.

POC

Reference

Github