PT-2007-5817 · Php · Php
Published
2007-09-04
·
Updated
2017-07-29
·
CVE-2007-4659
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
PHP versions prior to 5.2.4
Description:
The issue is related to the zend alter ini entry function in PHP, which does not properly handle an interruption to the flow of execution triggered by a memory limit violation. The impact and attack vectors of this issue are unknown.
Recommendations:
For versions prior to 5.2.4, update to version 5.2.4 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Php