Test: /ext/soap/tests/bug70388.phpt - Version 7.1.13        

Security #70388 SOAP serialize_function_call() type confusion / RCE
Submitted: 2015-08-29 12:44:22 Modified: 2015-09-09 10:09:00
From: andrea.palazzo Assigned: stas
Status: Closed Package: SOAP related
PHP Version: Irrelevant OS: Ubuntu x86_64

There are 2 different diffs reported by users for this test.

Count Diff
1 (50%)
003+ [Fri Apr 6 17:33:53 2018] Script: %s/bug70388.php'
004+ /usr/local/lsws/phpbuild/php-7.1.13/ext/standard/url.c(100) : Freeing 0x00007fbfd8402c60 (64 bytes), %s/bug70388.php
005+ /usr/local/lsws/phpbuild/php-7.1.13/Zend/zend_alloc.c(2488) : Actual location (location was relayed)
006+ [Fri Apr 6 17:33:53 2018] Script: %s/bug70388.php'
007+ /usr/local/lsws/phpbuild/php-7.1.13/ext/soap/php_http.c(936) : Freeing 0x00007fbfd8403078 (6 bytes), %s/bug70388.php
008+ [Fri Apr 6 17:33:53 2018] Script: %s/bug70388.php'
009+ /usr/local/lsws/phpbuild/php-7.1.13/ext/standard/url.c(155) : Freeing 0x00007fbfd8403398 (5 bytes), %s/bug70388.php
010+ [Fri Apr 6 17:33:53 2018] Script: %s/bug70388.php'
011+ /usr/local/lsws/phpbuild/php-7.1.13/ext/standard/url.c(294) : Freeing 0x00007fbfd8465c30 (10 bytes), %s/bug70388.php
012+ [Fri Apr 6 17:33:53 2018] Script: %s/bug70388.php'
013+ /usr/local/lsws/phpbuild/php-7.1.13/ext/standard/url.c(320) : Freeing 0x00007fbfd8465c60 (14 bytes), %s/bug70388.php
014+ [Fri Apr 6 17:33:53 2018] Script: %s/bug70388.php'
015+ /usr/local/lsws/phpbuild/php-7.1.13/ext/standard/url.c(327) : Freeing 0x00007fbfd8465c90 (15 bytes), %s/bug70388.php
016+ === Total 6 memory leaks detected ===
1 (50%)
001+ string(0) ""
002- string(9) "SoapFault"