Beveiligingsadvies

CVE-2010-3064

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2010-08-20 19:00:00
Laatst bijgewerkt 2024-08-07 02:55:46
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Stack-based buffer overflow in the php_mysqlnd_auth_write function in the Mysqlnd extension in PHP 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) username or (2) database name argument to the (a) mysql_connect or (b) mysqli_connect function.