CVE-2010-2225
Summary
| CVE | CVE-2010-2225 |
|---|---|
| State | PUBLISHED |
| Assigner | redhat |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2010-06-24 12:30:01 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Php | Php | 5.2.0 | All | All | All |
| Application | Php | Php | 5.2.1 | All | All | All |
| Application | Php | Php | 5.2.10 | All | All | All |
| Application | Php | Php | 5.2.11 | All | All | All |
| Application | Php | Php | 5.2.12 | All | All | All |
| Application | Php | Php | 5.2.13 | All | All | All |
| Application | Php | Php | 5.2.2 | All | All | All |
| Application | Php | Php | 5.2.3 | All | All | All |
| Application | Php | Php | 5.2.4 | All | All | All |
| Application | Php | Php | 5.2.5 | All | All | All |
| Application | Php | Php | 5.2.6 | All | All | All |
| Application | Php | Php | 5.2.7 | All | All | All |
| Application | Php | Php | 5.2.8 | All | All | All |
| Application | Php | Php | 5.2.9 | All | All | All |
| Application | Php | Php | 5.3.0 | All | All | All |
| Application | Php | Php | 5.3.1 | All | All | All |
| Application | Php | Php | 5.3.2 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| [security-announce] SUSE Security Summary Report: SUSE-SR:2010:018 | af854a3a-2127-422b-91ae-364da2661108 | lists.opensuse.org | |
| Debian -- Security Information -- DSA-2089-1 php5 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| Stefan Esser on Twitter: "Teaser for my talk tomorrow about a 0-day in PHP at #SyScan Singapore 2010 - http://pastebin.com/mXGidCsd" | af854a3a-2127-422b-91ae-364da2661108 | twitter.com | |
| APPLE-SA-2010-08-24-1 Security Update 2010-005 | af854a3a-2127-422b-91ae-364da2661108 | lists.apple.com | |
| PHP 'SplObjectStorage' Unserializer Arbitrary Code Execution Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Debian update for php5 - Advisories - Community | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| About Security Update 2010-005 | af854a3a-2127-422b-91ae-364da2661108 | support.apple.com | |
| [security-announce] SUSE Security Summary Report: SUSE-SR:2010:017 | af854a3a-2127-422b-91ae-364da2661108 | lists.opensuse.org | |
| Stefan Esser on Twitter: "The 0-day I showed at SyScan Singapore was a use-after-free vulnerability in PHP's unserialize().Unserializing user input==remote code exec." | af854a3a-2127-422b-91ae-364da2661108 | twitter.com | |
| Bug 605641 – CVE-2010-2225 php: SplObjectStorage unserialization flaws (MOPS-2010-061) | af854a3a-2127-422b-91ae-364da2661108 | bugzilla.redhat.com | |
| $ ./exploit.py -h http://t.tes - SyScan 2010 - PHP 0-day - mXGidCsd - Pastebin.com | af854a3a-2127-422b-91ae-364da2661108 | pastebin.com | Exploit |
| '[security bulletin] HPSBOV02763 SSRT100826 rev.1 - HP Secure Web Server (SWS) for OpenVMS running PH' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.