Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PHP before 5.2.3 allows context-dependent attackers to cause a denial of service (application crash) via (1) a long string in the pattern parameter to the glob function; or (2) a long string in the string parameter to the fnmatch function, accompanied by a pattern parameter value with undefined characteristics, as demonstrated by a "*[1]e" value. NOTE: this might not be a vulnerability in most web server environments that support multiple threads, unless these issues can be demonstrated for code execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPfnmatch()、setlocale()和glob()函数缓冲区溢出漏洞
Vulnerability Description
PHP是广泛使用的通用的脚本语言,特别适合于Web开发,可嵌入到HTML中。 PHP的5.2.5之前版本中存在安全漏洞,包括:fnmatch()、setlocale()和glob()函数中存在多个缓冲区溢出;
CVSS Information
N/A
Vulnerability Type
N/A