openssl_seal() is prone to use uninitialized memory that can be turned into a code execution. This document describes technical details of the journey to hijack apache2 requests. It is a very well written and thoroughly documented piece of research.
7328b4676384b96b2489eec8e7c79cb066123cadf924ac7ffb3cdc3f203e52c4
FreeBSD Security Advisory - An integer overflow in computing the size of IGMPv3 data buffer can result in a buffer which is too small for the requested operation. An attacker who can send specifically crafted IGMP packets could cause a denial of service situation by causing the kernel to crash. Revision 2 of this advisory.
07777cd1ce7f35b3c30e664d16946ac2cbbf3e05394da44684d68f4bff1b372a
FreeBSD Security Advisory - An integer overflow in computing the size of IGMPv3 data buffer can result in a buffer which is too small for the requested operation. An attacker who can send specifically crafted IGMP packets could cause a denial of service situation by causing the kernel to crash.
76ae1889e6e180016123dbcd9d01a3c9f96266857a6c54bf55851337ed754719
PHP socket connect() stack buffer overflow proof of concept code.
6abcba91bf7177e20f4ef770653563e589f25adaafe8dc216b107fff5b5e35b9
Month Of PHP Security - PHP uses the stream context during stream destruction, although it was already freed in the request shutdown before. PHP versions 5.2 through 5.2.13 and 5.3 through 5.3.2 are affected.
0dc931eb69c4ca111054feed1abc34e7434870a231fc6d4a8d722c895e3496da
Month Of PHP Security - PHP's fnmatch() function can be used to crash PHP through a stack exhaustion attack. PHP versions 5.2 through 5.2.13 and 5.3 through 5.3.2 are affected.
c13db5e41e6f631508f139cc4d97402b79a4a37c441571f27ad59bca30b2d145
Month Of PHP Security - PHP sqlite_array_query() Uninitialized Memory Usage Vulnerability. PHP versions 5.2.13 and below and 5.3.2 and below are affected.
e088169632635e105d95ac223539fe367c19525b8665f77eafa9aaad7d54e5f4
Month Of PHP Security - PHP sqlite_single_query() Uninitialized Memory Usage Vulnerability. PHP versions 5.2.13 and below and 5.3.2 and below are affected.
61cdbfcea6f345bf6762fe58f9dd5df64288bbcea21da5a89e112f929fe3421e