Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2021-21708
Description:In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.
Test IDs: 1.3.6.1.4.1.25623.1.0.147658   1.3.6.1.4.1.25623.1.1.4.2022.0654.1   1.3.6.1.4.1.25623.1.0.845260   1.3.6.1.4.1.25623.1.0.819806   1.3.6.1.4.1.25623.1.0.854572   1.3.6.1.4.1.25623.1.0.147657   1.3.6.1.4.1.25623.1.1.13.2022.048.02   1.3.6.1.4.1.25623.1.0.819812   1.3.6.1.4.1.25623.1.1.4.2022.0847.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2021-21708
https://security.gentoo.org/glsa/202209-20
https://bugs.php.net/bug.php?id=81708
https://bugs.php.net/bug.php?id=81708




© 1998-2025 E-Soft Inc. All rights reserved.