CVE-2015-6834 | PHP up to 5.4.44/5.5.28/5.6.12 SplObjectStorage/SplDoublyLinkedList unserialize use after free (EDB-40414 / Nessus ID 86794)
A vulnerability classified as critical has been found in PHP up to 5.4.44/5.5.28/5.6.12. This affects the function unserialize of the component SplObjectStorage/SplDoublyLinkedList. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2015-6834. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.