First published: Tue Jul 17 2007(Updated: )
The glob function in PHP 5.2.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter, probably related to memory corruption or an invalid read on win32 platforms, and possibly related to lack of initialization for a glob structure.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHP | =5.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3806 has a severity rating that indicates it can lead to denial of service and potentially execute arbitrary code.
To fix CVE-2007-3806, it is recommended to upgrade PHP to version 5.2.4 or later.
CVE-2007-3806 affects PHP version 5.2.3 specifically.
CVE-2007-3806 can be exploited by context-dependent attackers to cause a denial of service.
Yes, CVE-2007-3806 is likely related to memory corruption or an invalid read on win32 platforms.