Please see <a href="https://bugs.php.net/bug.php?id=67492">https://bugs.php.net/bug.php?id=67492</a> [<a href="https://bugs.php.net/bug.php?id=67492" target="_blank">^</a>] for a full description.<br />
<br />
In short it is possible to cause a segmentation fault via a type confusion vulnerability realted to at least SPL's ArrayObject and SPLObjectStorage. This is important when an object code injection could be possible.
↧