Description
Double free vulnerability in PHP before 4.4.7, and 5.x before 5.2.2, allows context-dependent attackers to execute arbitrary code by interrupting the session_regenerate_id function, as demonstrated by calling a userspace error handler or triggering a memory limit violation.
Remediation
References
Related Vulnerabilities
WordPress Plugin WooCommerce Salesforce Integration Cross-Site Scripting (1.5.8)
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-16177)
WordPress Plugin Email Before Download Unspecified Vulnerability (6.9.3)
WordPress Plugin WP-ViperGB Cross-Site Scripting (1.3.15)
WordPress Plugin iThemes Security (formerly Better WP Security) Security Bypass (5.3.5)