CVE-2003-0172: Buffer Overflow
Published Mar 29, 2003
·Updated
Buffer overflow in openlog function for PHP 4.3.1 on Windows operating system, and possibly other OSes, allows remote attackers to cause a crash and possibly execute arbitrary code via a long filename argument.
Affected Software
1 affected component
PHP PHP=4.3.1
Remediation
Patch Available
Event History
Mar 29, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Apr 2, 2003
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0172?
CVE-2003-0172 is classified as a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2003-0172?
To fix CVE-2003-0172, upgrade PHP to a version later than 4.3.1 that addresses this vulnerability.
3
Which versions of PHP are affected by CVE-2003-0172?
CVE-2003-0172 specifically affects PHP version 4.3.1 on the Windows operating system.
4
What is the impact of CVE-2003-0172?
The impact of CVE-2003-0172 can lead to application crashes and possible remote code execution for attackers.
5
Is CVE-2003-0172 limited to Windows operating systems?
While CVE-2003-0172 is known to affect Windows, it may also impact other operating systems.