Integer overflow in the substr_compare function in PHP 5.2.1 and earlier allows context-dependent attackers to read sensitive memory via a large value in the length argument, a different vulnerability than CVE-2006-1991.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php | Php | * | 5.2.1 (including) |
Php5 | Ubuntu | dapper | * |
Php5 | Ubuntu | devel | * |
Php5 | Ubuntu | edgy | * |
Php5 | Ubuntu | feisty | * |