CVE-2003-0860: Buffer Overflow
Published Oct 15, 2003
·Updated
Buffer overflows in PHP before 4.3.3 have unknown impact and unknown attack vectors.
Affected Software
25 affected components
PHP PHP=4.2.0
PHP PHP=4.1.0
PHP PHP=4.0.4
PHP PHP=4.3.0
PHP PHP=4.0.5
PHP PHP=4.0.7-rc2
PHP PHP=4.0.7-rc1
PHP PHP=4.2.2
PHP PHP=4.3.2
PHP PHP=4.0.1-patch1
PHP PHP=4.0.2
PHP PHP=4.0.6
PHP PHP=4.2.1
PHP PHP=4.2.3
PHP PHP=4.0.3
PHP PHP=4.0.3-patch1
PHP PHP=4.3.1
PHP PHP=4.0
PHP PHP=4.0.7-rc3
PHP PHP=4.1.1
PHP PHP=4.1.2
PHP PHP=4.0.1
PHP PHP=4.0.1-patch2
PHP PHP=4.0.7
PHP PHP=4.2
Event History
Oct 15, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Nov 17, 2003
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0860?
CVE-2003-0860 has an unknown impact and severity due to unspecified attack vectors.
2
How do I fix CVE-2003-0860?
The recommended fix for CVE-2003-0860 is to upgrade to PHP version 4.3.3 or later.
3
Which versions are affected by CVE-2003-0860?
CVE-2003-0860 affects PHP versions 4.0.0 through 4.3.2.
4
Is CVE-2003-0860 considered a security vulnerability?
Yes, CVE-2003-0860 is considered a security vulnerability due to the possibility of buffer overflows.
5
What should I do if I cannot upgrade PHP for CVE-2003-0860?
If upgrading is not an option, consider mitigating exposure by using security measures such as firewalls or web application firewalls.