Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in the php_mysqlnd_auth_write function in the Mysqlnd extension in PHP 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) username or (2) database name argument to the (a) mysql_connect or (b) mysqli_connect function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP Mysqlnd扩展php_mysqlnd_auth_write函数缓冲区溢出漏洞
Vulnerability Description
PHP是广泛使用的通用目的脚本语言,特别适合于Web开发,可嵌入到HTML中。 PHP 5.3至5.3.2版本中的Mysqlnd扩展中的php_mysqlnd_auth_write函数存在基于栈的缓冲区溢出漏洞。攻击者可以借助(a)mysql_connect或(b)mysqli_connect函数中的超长(1)用户名参数或(2)数据库名称参数导致拒绝服务(崩溃),并且可能执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A