CVE-2010-1917: Medium severity PHP PHP vulnerability
Stack consumption vulnerability in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (PHP crash) via a crafted first argument to the fnmatch function, as demonstrated using a long string.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1917?
CVE-2010-1917 has a severity rating that allows it to cause denial of service due to stack consumption, resulting in a PHP crash.
How do I fix CVE-2010-1917?
To fix CVE-2010-1917, upgrade PHP to version 5.3.3 or later, as these versions are not affected by the vulnerability.
What software versions are affected by CVE-2010-1917?
CVE-2010-1917 affects PHP versions 5.2.0 through 5.2.13 and 5.3.0 through 5.3.2.
How does CVE-2010-1917 impact web applications?
CVE-2010-1917 can allow malicious users to crash web applications utilizing vulnerable PHP versions through crafted input.
What is the exploit type of CVE-2010-1917?
CVE-2010-1917 is a stack consumption vulnerability that allows attackers to leverage a denial of service scenario.