PT-2007-3178 · Php · Php
Stefan Esser
·
Publicado
2007-04-02
·
Atualizado
2017-07-29
·
CVE-2007-1824
CVSS v2.0
5.1
Média
| Vetor | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
PHP versions prior to 5.2.1
Description:
The issue is related to a buffer overflow in the php stream filter create function. This can be exploited by remote attackers to cause a denial of service, resulting in an application crash. The attack vector involves a php://filter/ URL with a name ending in the '.' character.
Recommendations:
For versions prior to 5.2.1, update to version 5.2.1 or later to resolve the issue.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Php