Vulnerability Database

290,301

Total vulnerabilities in the database

CVE-2010-3709

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

  • Published: Nov 9, 2010
  • Updated: Apr 13, 2023
  • CVE: CVE-2010-3709
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
php / php 5.3.0 5.3.4
php / php 5.2.0 5.2.15
canonical / ubuntu_linux 10.10 10.10.x
canonical / ubuntu_linux 9.10 9.10.x
canonical / ubuntu_linux 8.04 8.04.x
canonical / ubuntu_linux 10.04 10.04.x
canonical / ubuntu_linux 6.06 6.06.x