CVE-2009-1271
CVE-2009-1271
The JSON_parser function (ext/json/JSON_parser.c) in PHP 5.2.x before 5.2.9 allows remote attackers to cause a denial of service (segmentation fault) via a malformed string to the json_decode API function.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://cvs.php.net/viewvc.cgi/php-src/ext/json/JSON_parser.c?r1=1.1.2.14&r2=1.1.2.15http://lists.apple.com/archives/security-announce/2009/Sep/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-07/msg00002.htmlhttp://secunia.com/advisories/34770http://secunia.com/advisories/34830http://secunia.com/advisories/34933http://secunia.com/advisories/35003http://secunia.com/advisories/35007http://secunia.com/advisories/35306http://secunia.com/advisories/35685http://secunia.com/advisories/36701http://support.apple.com/kb/HT3865