Your submission was sent successfully! Close

CVE-2006-1991

Published: 24 April 2006

The substr_compare function in string.c in PHP 5.1.2 allows context-dependent attackers to cause a denial of service (memory access violation) via an out-of-bounds offset argument.

Priority

Unknown

Status

Package Release Status
php4
Launchpad, Ubuntu, Debian
dapper Not vulnerable

edgy Not vulnerable

feisty Does not exist

upstream Needs triage

php5
Launchpad, Ubuntu, Debian
dapper
Released (5.1.2-1ubuntu3.9)
edgy
Released (5.1.6-1ubuntu2.6)
feisty
Released (5.2.1-0ubuntu1.4)
upstream Needs triage