5
CVSSv2

CVE-2013-2110

Published: 21/06/2013 Updated: 31/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Heap-based buffer overflow in the php_quot_print_encode function in ext/standard/quot_print.c in PHP prior to 5.3.26 and 5.4.x prior to 5.4.16 allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted argument to the quoted_printable_encode function.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 5.3.20

php php 5.3.12

php php 5.3.8

php php 5.3.5

php php 5.3.9

php php 5.2.12

php php 5.2.10

php php 5.2.6

php php 5.2.4

php php 5.1.1

php php 5.1.0

php php 5.0.0

php php 4.3.5

php php 4.2.1

php php 4.4.6

php php 4.4.7

php php 4.4.2

php php 4.4.3

php php 4.0

php php 4.0.6

php php 4.1.0

php php 4.0.7

php php 3.0.2

php php 3.0.18

php php 3.0.4

php php 3.0.7

php php 3.0.8

php php 5.3.22

php php 5.3.23

php php 5.3.15

php php 5.3.14

php php 5.3.1

php php 5.3.7

php php 5.3.6

php php 5.2.9

php php 5.2.16

php php 5.2.0

php php 5.2.8

php php 5.2.17

php php 5.1.3

php php 5.1.2

php php 5.0.4

php php 5.0.3

php php 4.3.3

php php 4.3.6

php php 4.2.2

php php 4.4.5

php php 4.4.0

php php 4.4.1

php php 4.1.2

php php 4.1.1

php php 3.0.1

php php 3.0

php php 3.0.16

php php 3.0.9

php php 1.0

php php 5.3.21

php php 5.3.17

php php 5.3.16

php php 5.3.3

php php 5.3.0

php php 5.3.10

php php 5.2.15

php php 5.2.11

php php 5.2.7

php php 5.2.1

php php 5.2.2

php php 5.1.5

php php 5.0.5

php php 5.0.2

php php 5.0.1

php php 4.3.2

php php 4.3.11

php php 4.3.4

php php 4.4.9

php php 4.2.3

php php 4.3.8

php php 4.3.9

php php 4.0.1

php php 4.0.0

php php 4.0.3

php php 4.0.2

php php 3.0.13

php php 3.0.12

php php 3.0.14

php php 3.0.17

php php 2.0b10

php php 2.0

php php 5.3.19

php php 5.3.18

php php 5.3.11

php php 5.3.4

php php 5.3.13

php php 5.3.2

php php 5.2.13

php php 5.2.5

php php 5.2.3

php php 5.2.14

php php 5.1.6

php php 5.1.4

php php 4.3.10

php php 4.3.1

php php 4.4.8

php php 4.2.0

php php 4.3.0

php php 4.3.7

php php 4.4.4

php php 4.0.5

php php 4.0.4

php php 3.0.11

php php 3.0.10

php php 3.0.3

php php 3.0.15

php php 3.0.5

php php 3.0.6

php php 5.3.24

php php

php php 5.4.2

php php 5.4.11

php php 5.4.12

php php 5.4.13

php php 5.4.3

php php 5.4.0

php php 5.4.1

php php 5.4.6

php php 5.4.5

php php 5.4.4

php php 5.4.8

php php 5.4.7

php php 5.4.10

php php 5.4.9

php php 5.4.14

php php 5.4.15

Vendor Advisories

PHP could be made to crash or run programs if it received specially crafted input ...
Heap-based buffer overflow in the php_quot_print_encode function in ext/standard/quot_printc in PHP before 5326 and 54x before 5416 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted argument to the quoted_printable_encode function ...
Heap-based buffer overflow in the php_quot_print_encode function in ext/standard/quot_printc in PHP before 5326 and 54x before 5416 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted argument to the quoted_printable_encode function ...