CVE Vulnerabilities

CVE-2007-1886

Published: Apr 06, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in the str_replace function in PHP 4.4.5 and PHP 5.2.1 allows context-dependent attackers to have an unknown impact via a single character search string in conjunction with a single character replacement string, which causes an off by one overflow.

Affected Software

Name Vendor Start Version End Version
Php Php 4.4.5 (including) 4.4.5 (including)
Php Php 5.2.1 (including) 5.2.1 (including)

References