Your submission was sent successfully! Close

CVE-2007-5898

Published: 20 November 2007

The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which has unknown impact and attack vectors, a different issue than CVE-2006-5465.

Priority

Low

Status

Package Release Status
php5
Launchpad, Ubuntu, Debian
dapper
Released (5.1.2-1ubuntu3.10)
edgy
Released (5.1.6-1ubuntu2.7)
feisty
Released (5.2.1-0ubuntu1.5)
gutsy
Released (5.2.3-1ubuntu6.1)
hardy
Released (5.2.4-2ubuntu5.3)
upstream
Released (5.2.5)