Oval Definition:oval:org.opensuse.security:def:20070906
Revision Date:2017-09-27Version:1
Title:CVE-2007-0906
Description:

Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors in the (1) session, (2) zip, (3) imap, and (4) sqlite extensions; (5) stream filters; and the (6) str_replace, (7) mail, (8) ibase_delete_user, (9) ibase_add_user, and (10) ibase_modify_user functions. NOTE: vector 6 might actually be an integer overflow (CVE-2007-1885). NOTE: as of 20070411, vector (3) might involve the imap_mail_compose function (CVE-2007-1825).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2007-0906
Platform(s):Open Enterprise Server
openSUSE 10.2
SUSE LINUX 10.0
SUSE LINUX 10.1
SUSE LINUX 9.3
SUSE Linux Enterprise Server 10 SP1 for AMD64 and Intel EM64T
SUSE Linux Enterprise Server 10 SP1 for IBM POWER
SUSE Linux Enterprise Server 10 SP1 for IBM zSeries 64bit
SUSE Linux Enterprise Server 10 SP1 for IPF
SUSE Linux Enterprise Server 10 SP1 for x86
SuSE Linux Enterprise Server 8 for AMD64
SuSE Linux Enterprise Server 8 for IBM iSeries and IBM pSeries
SuSE Linux Enterprise Server 8 for IBM zSeries
SuSE Linux Enterprise Server 8 for IPF
SuSE Linux Openexchange Server 4
SUSE LINUX Retail Solution 8
SuSE Linux School Server for i386
SuSE Linux Standard Server 8
UnitedLinux 1.0
Product(s):
Definition Synopsis
  • Release Information
  • sles10-sp1-online is installed
  • AND
  • apache2-devel less than 2.2.3-16.9
  • OR apache2-doc less than 2.2.3-16.9
  • OR apache2-example-pages less than 2.2.3-16.9
  • OR apache2-mod_php5 less than 5.1.2-29.35
  • OR apache2-prefork less than 2.2.3-16.9
  • OR apache2-worker less than 2.2.3-16.9
  • OR apache2 less than 2.2.3-16.9
  • OR php5-bcmath less than 5.1.2-29.35
  • OR php5-bz2 less than 5.1.2-29.35
  • OR php5-calendar less than 5.1.2-29.35
  • OR php5-ctype less than 5.1.2-29.35
  • OR php5-curl less than 5.1.2-29.35
  • OR php5-dba less than 5.1.2-29.35
  • OR php5-dbase less than 5.1.2-29.35
  • OR php5-devel less than 5.1.2-29.35
  • OR php5-dom less than 5.1.2-29.35
  • OR php5-exif less than 5.1.2-29.35
  • OR php5-fastcgi less than 5.1.2-29.35
  • OR php5-filepro less than 5.1.2-29.35
  • OR php5-ftp less than 5.1.2-29.35
  • OR php5-gd less than 5.1.2-29.35
  • OR php5-gettext less than 5.1.2-29.35
  • OR php5-gmp less than 5.1.2-29.35
  • OR php5-iconv less than 5.1.2-29.35
  • OR php5-imap less than 5.1.2-29.35
  • OR php5-ldap less than 5.1.2-29.35
  • OR php5-mbstring less than 5.1.2-29.35
  • OR php5-mcrypt less than 5.1.2-29.35
  • OR php5-mhash less than 5.1.2-29.35
  • OR php5-mysql less than 5.1.2-29.35
  • OR php5-mysqli less than 5.1.2-29.35
  • OR php5-ncurses less than 5.1.2-29.35
  • OR php5-odbc less than 5.1.2-29.35
  • OR php5-openssl less than 5.1.2-29.35
  • OR php5-pcntl less than 5.1.2-29.35
  • OR php5-pdo less than 5.1.2-29.35
  • OR php5-pear less than 5.1.2-29.35
  • OR php5-pgsql less than 5.1.2-29.35
  • OR php5-posix less than 5.1.2-29.35
  • OR php5-pspell less than 5.1.2-29.35
  • OR php5-shmop less than 5.1.2-29.35
  • OR php5-snmp less than 5.1.2-29.35
  • OR php5-soap less than 5.1.2-29.35
  • OR php5-sockets less than 5.1.2-29.35
  • OR php5-sqlite less than 5.1.2-29.35
  • OR php5-sysvmsg less than 5.1.2-29.35
  • OR php5-sysvsem less than 5.1.2-29.35
  • OR php5-sysvshm less than 5.1.2-29.35
  • OR php5-tokenizer less than 5.1.2-29.35
  • OR php5-wddx less than 5.1.2-29.35
  • OR php5-xmlreader less than 5.1.2-29.35
  • OR php5-xmlrpc less than 5.1.2-29.35
  • OR php5-xsl less than 5.1.2-29.35
  • OR php5-zlib less than 5.1.2-29.35
  • OR Package Information
  • sles10-sp1-online is installed
  • AND php5-suhosin less than 5.1.2-29.35
  • BACK