CVE-2009-4143
Publication date 21 December 2009
Last updated 24 July 2024
Ubuntu priority
PHP before 5.2.12 does not properly handle session data, which has unspecified impact and attack vectors related to (1) interrupt corruption of the SESSION superglobal array and (2) the session.save_path directive.
Status
Package | Ubuntu Release | Status |
---|---|---|
php5 | ||
Notes
Patch details
Package | Patch details |
---|---|
php5 |
References
Related Ubuntu Security Notices (USN)
- USN-882-1
- PHP vulnerabilities
- 13 January 2010