Integer overflow in the substr_compare function in PHP 5.2.1 and earlier allows context-dependent attackers to read sensitive memory via a large value in the length argument, a different vulnerability than CVE-2006-1991.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Php | Php | * | 5.2.1 (including) |
| Php5 | Ubuntu | dapper | * |
| Php5 | Ubuntu | devel | * |
| Php5 | Ubuntu | edgy | * |
| Php5 | Ubuntu | feisty | * |