Description
PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.
Remediation
References
Related Vulnerabilities
WordPress Plugin GNUCommerce Cross-Site Scripting (1.4.1)
Oracle Database Server CVE-2013-3760 Vulnerability (CVE-2013-3760)
Moodle Uncontrolled Resource Consumption Vulnerability (CVE-2021-20185)
Dolibarr Improper Input Validation Vulnerability (CVE-2022-0174)
WordPress Plugin Extra User Details Privilege Escalation (0.4.2)