CVE-2007-1285
The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (stack exhaustion and PHP crash) via deeply nested arrays, which trigger deep recursion in the variable destruction routines.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 18.2%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (stack exhaustion and PHP crash) via deeply nested arrays, which trigger deep recursion in the variable destruction routines.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 18.16% probability · 97th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-674
- Affected
- php/php · canonical/ubuntu linux · novell/suse linux · suse/linux enterprise server · redhat/enterprise linux desktop · redhat/enterprise linux server · redhat/enterprise linux workstation
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2007-07/msg00006.htmlMailing List
- http://rhn.redhat.com/errata/RHSA-2007-0154.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2007-0155.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2007-0163.htmlBroken Link
- http://secunia.com/advisories/24909Broken Link, Vendor Advisory
- http://secunia.com/advisories/24910Broken Link, Vendor Advisory
- http://secunia.com/advisories/24924Broken Link, Vendor Advisory
- http://secunia.com/advisories/24941Broken Link, Vendor Advisory
- http://secunia.com/advisories/24945Broken Link, Vendor Advisory
- http://secunia.com/advisories/25445Broken Link, Vendor Advisory
- http://secunia.com/advisories/26048Broken Link, Vendor Advisory
- http://secunia.com/advisories/26642Broken Link, Vendor Advisory
- http://secunia.com/advisories/27864Broken Link, Vendor Advisory
- http://secunia.com/advisories/28936Broken Link, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200705-19.xmlThird Party Advisory
- http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.335136Broken Link
- http://us2.php.net/releases/4_4_7.phpRelease Notes
- http://us2.php.net/releases/5_2_2.phpRelease Notes
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:087Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:088Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:089Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:090Third Party Advisory
- http://www.osvdb.org/32769Broken Link
- http://www.php-security.org/MOPB/MOPB-03-2007.htmlBroken Link, Exploit, Vendor Advisory
- http://www.php.net/ChangeLog-4.phpRelease Notes
- http://www.php.net/ChangeLog-5.php#5.2.4Release Notes
- http://www.php.net/releases/4_4_8.phpRelease Notes
- http://www.php.net/releases/5_2_4.phpRelease Notes
- http://www.redhat.com/support/errata/RHSA-2007-0082.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2007-0162.htmlBroken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.