7.5
CVSSv2

CVE-2007-4659

Published: 04/09/2007 Updated: 29/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The zend_alter_ini_entry function in PHP prior to 5.2.4 does not properly handle an interruption to the flow of execution triggered by a memory_limit violation, which has unknown impact and attack vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

php php

Vendor Advisories

It was discovered that the patch for CVE-2007-4659 could lead to regressions in some scenarios The fix has been reverted for now, a revised update will be provided in a future PHP DSA For reference the original advisory below: Several remote vulnerabilities have been discovered in PHP, a server-side, HTML-embedded scripting language The Common ...