FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2007-0906

This CVE name corresponds to:

Entered Topic
2007-02-17 php -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2007-0906
Phase Assigned(20070213)

Description

Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors in the (1) session, (2) zip, (3) imap, and (4) sqlite extensions; (5) stream filters; and the (6) str_replace, (7) mail, (8) ibase_delete_user, (9) ibase_add_user, and (10) ibase_modify_user functions. NOTE: vector 6 might actually be an integer overflow (CVE-2007-1885). NOTE: as of 20070411, vector (3) might involve the imap_mail_compose function (CVE-2007-1825).

References

Source Reference
BUGTRAQ 20070227 rPSA-2007-0043-1 php php-mysql php-pgsql
BUGTRAQ 20070418 rPSA-2007-0073-1 php php-mysql php-pgsql
CONFIRM http://www.php.net/ChangeLog-5.php#5.2.1
CONFIRM http://www.php.net/releases/5_2_1.php
CONFIRM https://issues.rpath.com/browse/RPL-1088
CONFIRM http://support.avaya.com/elmodocs2/security/ASA-2007-101.htm
CONFIRM http://support.avaya.com/elmodocs2/security/ASA-2007-136.htm
CONFIRM https://issues.rpath.com/browse/RPL-1268
DEBIAN DSA-1264
GENTOO GLSA-200703-21
MANDRIVA MDKSA-2007:048
OPENPKG OpenPKG-SA-2007.010
REDHAT RHSA-2007:0076
REDHAT RHSA-2007:0081
REDHAT RHSA-2007:0089
REDHAT RHSA-2007:0088
REDHAT RHSA-2007:0082
SGI 20070201-01-P
SUSE SUSE-SA:2007:020
SUSE SUSE-SA:2007:044
TRUSTIX 2007-0009
UBUNTU USN-424-1
UBUNTU USN-424-2
BID 22496
OVAL oval:org.mitre.oval:def:8992
VUPEN ADV-2007-0546
OSVDB 32776
OSVDB 34706
OSVDB 34707
OSVDB 34708
OSVDB 34709
OSVDB 34710
OSVDB 34711
OSVDB 34712
OSVDB 34713
OSVDB 34714
OSVDB 34715
SECTRACK 1017671
SECUNIA 24089
SECUNIA 24195
SECUNIA 24217
SECUNIA 24248
SECUNIA 24236
SECUNIA 24295
SECUNIA 24322
SECUNIA 24432
SECUNIA 24421
SECUNIA 24514
SECUNIA 24606
SECUNIA 24642
SECUNIA 24945
SECUNIA 24284
SECUNIA 24419
SECUNIA 26048