Description
An unspecified vulnerability was found in PHP before 5.3.29, 5.4.x before 5.4.30, and 5.5.x before 5.5.14. By exploiting this vulnerability malicious users can cause a denial of service. Other unspecified impacts are also possible. This vulnerability can be exploited remotely via a locale_get_display_name call with a long first argument.
Technical details
This vulnerability occurs in the get_icu_disp_value_src_php function in ext/intl/locale/locale_methods.c.
Original advisories
Related products
CVE list
- CVE-2014-9912 critical
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!