CVE Vulnerabilities

CVE-2007-1890

Published: Apr 06, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the msg_receive function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1, on FreeBSD and possibly other platforms, allows context-dependent attackers to execute arbitrary code via certain maxsize values, as demonstrated by 0xffffffff.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp4.0.0 (including)4.0.0 (including)
PhpPhp4.0.1 (including)4.0.1 (including)
PhpPhp4.0.1-patch1 (including)4.0.1-patch1 (including)
PhpPhp4.0.1-patch2 (including)4.0.1-patch2 (including)
PhpPhp4.0.2 (including)4.0.2 (including)
PhpPhp4.0.3 (including)4.0.3 (including)
PhpPhp4.0.3-patch1 (including)4.0.3-patch1 (including)
PhpPhp4.0.4 (including)4.0.4 (including)
PhpPhp4.0.4-patch1 (including)4.0.4-patch1 (including)
PhpPhp4.0.5 (including)4.0.5 (including)
PhpPhp4.0.6 (including)4.0.6 (including)
PhpPhp4.0.7 (including)4.0.7 (including)
PhpPhp4.0.7-rc1 (including)4.0.7-rc1 (including)
PhpPhp4.0.7-rc2 (including)4.0.7-rc2 (including)
PhpPhp4.0.7-rc3 (including)4.0.7-rc3 (including)
PhpPhp4.1.0 (including)4.1.0 (including)
PhpPhp4.1.1 (including)4.1.1 (including)
PhpPhp4.1.2 (including)4.1.2 (including)
PhpPhp4.2 (including)4.2 (including)
PhpPhp4.2.0 (including)4.2.0 (including)
PhpPhp4.2.1 (including)4.2.1 (including)
PhpPhp4.2.2 (including)4.2.2 (including)
PhpPhp4.2.3 (including)4.2.3 (including)
PhpPhp4.3.0 (including)4.3.0 (including)
PhpPhp4.3.1 (including)4.3.1 (including)
PhpPhp4.3.2 (including)4.3.2 (including)
PhpPhp4.3.3 (including)4.3.3 (including)
PhpPhp4.3.4 (including)4.3.4 (including)
PhpPhp4.3.5 (including)4.3.5 (including)
PhpPhp4.3.6 (including)4.3.6 (including)
PhpPhp4.3.7 (including)4.3.7 (including)
PhpPhp4.3.8 (including)4.3.8 (including)
PhpPhp4.3.9 (including)4.3.9 (including)
PhpPhp4.3.10 (including)4.3.10 (including)
PhpPhp4.3.11 (including)4.3.11 (including)
PhpPhp4.4.0 (including)4.4.0 (including)
PhpPhp4.4.1 (including)4.4.1 (including)
PhpPhp4.4.2 (including)4.4.2 (including)
PhpPhp4.4.3 (including)4.4.3 (including)
PhpPhp4.4.4 (including)4.4.4 (including)
PhpPhp5.0-rc1 (including)5.0-rc1 (including)
PhpPhp5.0-rc2 (including)5.0-rc2 (including)
PhpPhp5.0-rc3 (including)5.0-rc3 (including)
PhpPhp5.0.0 (including)5.0.0 (including)
PhpPhp5.0.0-beta1 (including)5.0.0-beta1 (including)
PhpPhp5.0.0-beta2 (including)5.0.0-beta2 (including)
PhpPhp5.0.0-beta3 (including)5.0.0-beta3 (including)
PhpPhp5.0.0-beta4 (including)5.0.0-beta4 (including)
PhpPhp5.0.0-rc1 (including)5.0.0-rc1 (including)
PhpPhp5.0.0-rc2 (including)5.0.0-rc2 (including)
PhpPhp5.0.0-rc3 (including)5.0.0-rc3 (including)
PhpPhp5.0.1 (including)5.0.1 (including)
PhpPhp5.0.2 (including)5.0.2 (including)
PhpPhp5.0.3 (including)5.0.3 (including)
PhpPhp5.0.4 (including)5.0.4 (including)
PhpPhp5.0.5 (including)5.0.5 (including)
PhpPhp5.1.0 (including)5.1.0 (including)
PhpPhp5.1.1 (including)5.1.1 (including)
PhpPhp5.1.2 (including)5.1.2 (including)
PhpPhp5.1.3 (including)5.1.3 (including)
PhpPhp5.1.4 (including)5.1.4 (including)
PhpPhp5.1.5 (including)5.1.5 (including)
PhpPhp5.1.6 (including)5.1.6 (including)
PhpPhp5.2.0 (including)5.2.0 (including)
Php4Ubuntudapper*
Php4Ubuntuedgy*

References