CVE-2011-1464: Buffer Overflow
Buffer overflow in the strval function in PHP before 5.3.6, when the precision configuration option has a large value, might allow context-dependent attackers to cause a denial of service (application crash) via a small numerical value in the argument.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1464?
CVE-2011-1464 is considered to have a moderate severity as it could lead to a denial of service by crashing the application.
How do I fix CVE-2011-1464?
To fix CVE-2011-1464, upgrade your PHP version to 5.3.6 or later, as earlier versions are affected by this vulnerability.
What versions of PHP are affected by CVE-2011-1464?
CVE-2011-1464 affects PHP versions 3.0 through 5.3.5.
What types of attacks are possible using CVE-2011-1464?
CVE-2011-1464 allows attackers to exploit a buffer overflow, potentially leading to application crashes.
Is CVE-2011-1464 specific to any platforms?
CVE-2011-1464 is not platform-specific and affects multiple operating systems running the vulnerable versions of PHP.