Your submission was sent successfully! Close

CVE-2007-1286

Published: 06 March 2007

Integer overflow in PHP 4.4.4 and earlier allows remote context-dependent attackers to execute arbitrary code via a long string to the unserialize function, which triggers the overflow in the ZVAL reference counter.

Priority

Unknown

Status

Package Release Status
php4
Launchpad, Ubuntu, Debian
Upstream Needs triage