Buffer overflows in (1) php_mime_split in PHP 4.1.0, 4.1.1, and 4.0.6 and earlier, and (2) php3_mime_split in PHP 3.0.x allows remote attackers to execute arbitrary code via a multipart/form-data HTTP POST request when file_uploads is enabled.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Php | Php | 3.0 (including) | 3.0 (including) |
| Php | Php | 4.0.6 (including) | 4.0.6 (including) |
| Php | Php | 4.1.0 (including) | 4.1.0 (including) |
| Php | Php | 4.1.1 (including) | 4.1.1 (including) |
| Red Hat Linux 6.2 | RedHat | * | |
| Red Hat Linux 7.0 | RedHat | * | |
| Red Hat Linux 7.1 | RedHat | * | |
| Red Hat Linux 7.2 | RedHat | * | |
| Red Hat Stronghold 3 | RedHat | * |