vendor:
PHP
by:
Stefan Esser
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: PHP
Affected Version From: PHP 4
Affected Version To: PHP 4
Patch Exists: NO
Related CWE: CVE-2007-1001
CPE: a:php:php:4
Metasploit:
https://www.rapid7.com/db/vulnerabilities/f5-big-ip-cve-2007-1001/, https://www.rapid7.com/db/vulnerabilities/freebsd-vid-f5e52bf5-fc77-11db-8163-000e0c2e438a/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2007-1001/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2007-1001/, https://www.rapid7.com/db/vulnerabilities/php-cve-2007-1001/, https://www.rapid7.com/db/vulnerabilities/apple-osx-php-cve-2007-1001/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0153/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0155/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0162/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2007-0155/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2007-0153/
Platforms Tested: Linux x86
2007
PHP 4 – unserialize() Reference Counter Overflow
This exploit takes advantage of a buffer overflow vulnerability in the unserialize() function in PHP 4. By manipulating the hashtable variable, an attacker can overwrite memory and execute arbitrary code. This specific exploit is designed for Linux x86 systems.
Mitigation:
Update to a version of PHP that is not affected by this vulnerability.