CVE Vulnerabilities

CVE-2007-1886

Published: Apr 06, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in the str_replace function in PHP 4.4.5 and PHP 5.2.1 allows context-dependent attackers to have an unknown impact via a single character search string in conjunction with a single character replacement string, which causes an off by one overflow.

Affected Software

Name Vendor Start Version End Version
Php Php 4.4.5 4.4.5
Php Php 5.2.1 5.2.1

References