Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PHP Security? Bugtraq id 29829

Status
Not open for further replies.

Hondy

Technical User
Mar 3, 2003
864
GB
Hi

I can't find if disabling any service/option will mitigate the following vulnerability until there is a PHP update. Anyone got any clues as to how to mitigate the issue?

Ta


****************************************

Bugtraq id 29829



PHP 'rfc822_write_address()' Function Buffer Overflow Vulnerability

PHP is prone to a buffer-overflow vulnerability because it fails to perform boundary checks before copying user-supplied data to insufficiently sized memory buffers.

An attacker can exploit this issue to execute arbitrary machine code in the context of the affected webserver. Failed exploit attempts will likely crash the webserver, denying service to legitimate users.

PHP 5.2.6 and prior versions are vulnerable
 
ah its ok, its some old IMAP issue, I don't use that.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top