php php CVE-2010-1866 vulnerability in PHP and Other Products
Published on May 7, 2010

product logo product logo product logo
The dechunk filter in PHP 5.3 through 5.3.2, when decoding an HTTP chunked encoding stream, allows context-dependent attackers to cause a denial of service (crash) and possibly trigger memory corruption via a negative chunk size, which bypasses a signed comparison, related to an integer overflow in the chunk size decoder.

Vendor Advisory NVD


Products Associated with CVE-2010-1866

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2010-1866 are published in these products:

PHP
 
 
 

Exploit Probability

EPSS
1.56%
Percentile
81.22%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.