LWN.net Logo

Advertisement

E-Commerce & credit card processing - the Open Source way!

Advertise here

php: denial of service

Package(s):php CVE #(s):CVE-2007-4782
Created:July 16, 2008 Updated:July 24, 2008
Description:

From the Red Hat advisory:

It was discovered that PHP fnmatch() function did not restrict the length of the string argument. An attacker could use this flaw to crash the PHP interpreter where a script used fnmatch() on untrusted input data. (CVE-2007-4782)

Alerts:
Ubuntu USN-628-1 2008-07-23
CentOS CESA-2008:0545 2008-07-16
CentOS CESA-2008:0544 2008-07-16
Red Hat RHSA-2008:0545-01 2008-07-16
Red Hat RHSA-2008:0582-01 2008-07-22
Red Hat RHSA-2008:0544-01 2008-07-16

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds