CVE Vulnerabilities

CVE-2007-1401

Published: Mar 10, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Buffer overflow in the crack extension (CrackLib), as bundled with PHP 4.4.6 and other versions before 5.0.0, might allow local users to gain privileges via a long argument to the crack_opendict function.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp4.4.6 (including)4.4.6 (including)
Php4Ubuntudapper*
Php4Ubuntuedgy*

References