The array_fill function in ext/standard/array.c in PHP 4.4.2 and 5.1.2 allows context-dependent attackers to cause a denial of service (memory consumption) via a large num value.
| Software | From | Fixed in |
|---|---|---|
| php_group / php | 5.1.2 | 5.1.2.x |
| php_group / php | 4.4.2 | 4.4.2.x |