Buffer overflow in the imap_fetch_overview function in the IMAP functionality (php_imap.c) in PHP before 4.3.3 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long e-mail address in a (1) To or (2) From header.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php | Php | 4.3.0 | 4.3.0 |
Php | Php | 4.3.1 | 4.3.1 |
Php | Php | 4.3.2 | 4.3.2 |
Red Hat Enterprise Linux 2.1 | RedHat | php | * |
Red Hat Enterprise Linux 3 | RedHat | php-0:4.3.2-30.ent | * |
Red Hat Enterprise Linux 4 | RedHat | php-0:4.3.9-3.12 | * |