vendor:
PHP
by:
r0ut3r
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: PHP
Affected Version From: PHP/5.2.3
Affected Version To: PHP/5.2.3
Patch Exists: NO
Related CWE:
CPE: a:php:php:5.2.3
Platforms Tested: Windows XP SP0
2007
PHP imagepsloadfont Buffer Overflow Vulnerability
The PHP imagepsloadfont function is vulnerable to a buffer overflow. By providing a long string as the argument, an attacker can cause an access violation and potentially execute arbitrary code.
Mitigation:
Update the PHP version to a patched version that addresses the buffer overflow vulnerability.