Description
Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of service (memory consumption) via (1) plaintext data to the openssl_encrypt function or (2) ciphertext data to the openssl_decrypt function.
Remediation
References
Related Vulnerabilities
WordPress 2.0.2 Username Remote PHP Code Injection Vulnerability (0.6.2 - 2.0.2)
Liferay DXP Incorrect Authorization Vulnerability (CVE-2025-62275)
Oracle Database Server CVE-2011-0811 Vulnerability (CVE-2011-0811)
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-5084)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3231)