Description
The glob function in PHP 5.2.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter, probably related to memory corruption or an invalid read on win32 platforms, and possibly related to lack of initialization for a glob structure.
Remediation
References
Related Vulnerabilities
Apache Tomcat Resource Management Errors Vulnerability (CVE-2011-4858)
MediaWiki Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2021-41800)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0185)
Invision Power Board version 3.3.4 unserialize PHP code execution