A AegiFlow
CRITICALCVSS 9.8

CVE-2017-9119

CVE-2017-9119 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 allows attackers to cause a denial of service (memory consumption and application crash) or possibly have unspecified other impact by triggering crafted operations on array data structures.

Affected packages

EcosystemPackageAffected versionsFixed versions
PHPphp[object Object]

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.