CVE-2007-1383
critical · 9.8Integer overflow in the 16 bit variable reference counter in PHP 4 allows context-dependent attackers to execute arbitrary code by overflowing this counter, which causes the same variable to be destroyed twice, a related issue to CVE-2007-1286.
9.8
CVSS
15.2%
EPSS (exploit prob.)
97th
EPSS percentile
2007-03-10
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-189CWE-190
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| php | php | 4.0 |
Check a specific version with /api/v1/cve/match.
References
- http://secunia.com/advisories/24606
- http://secunia.com/advisories/25056
- http://security.gentoo.org/glsa/glsa-200703-21.xml
- http://www.novell.com/linux/security/advisories/2007_32_php.html
- http://www.osvdb.org/32770
- http://www.php-security.org/MOPB/MOPB-01-2007.html
- http://www.securityfocus.com/bid/22765
- http://secunia.com/advisories/24606
- http://secunia.com/advisories/25056
- http://security.gentoo.org/glsa/glsa-200703-21.xml
- http://www.novell.com/linux/security/advisories/2007_32_php.html
- http://www.osvdb.org/32770
- http://www.php-security.org/MOPB/MOPB-01-2007.html
- http://www.securityfocus.com/bid/22765
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2007-1383