First published: Tue Sep 04 2007(Updated: )
The zend_alter_ini_entry function in PHP before 5.2.4 does not properly handle an interruption to the flow of execution triggered by a memory_limit violation, which has unknown impact and attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHP | <=5.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4659 is considered to have an unknown severity level due to the lack of detailed information on its impact and attack vectors.
To mitigate CVE-2007-4659, upgrade PHP to version 5.2.4 or later, which addresses the vulnerability.
CVE-2007-4659 affects PHP versions prior to 5.2.4, including all versions up to 5.2.3.
The impact of CVE-2007-4659 is unknown, as it relates to interruptions triggered by memory limit violations.
CVE-2007-4659 is not classified as a critical vulnerability due to the unclear nature of its potential attacks.