CVE-2007-0907: Medium severity PHP PHP vulnerability
Published Feb 13, 2007
·Updated
Buffer underflow in PHP before 5.2.1 allows attackers to cause a denial of service via unspecified vectors involving the sapiheaderop function.
Affected Software
77 affected components
PHP PHP=4.3.9
PHP PHP=3.0
PHP PHP=3.0.5
PHP PHP=3.0.11
PHP PHP=5.1.5
PHP PHP=5.1.2
PHP PHP=4.2.0
PHP PHP=5.1.1
PHP PHP=3.0.1
PHP PHP=3.0.2
PHP PHP=4.4.4
PHP PHP=4.1.0
PHP PHP=5.1.6
PHP PHP=4.3.4
PHP PHP=4.0.4
PHP PHP=4.3.0
PHP PHP=4.0.5
PHP PHP=5.0-rc1
PHP PHP=3.0.8
PHP PHP=5.0.5
PHP PHP=4.3.6
PHP PHP=3.0.13
PHP PHP=5.0.1
PHP PHP=5.1.4
PHP PHP=4.0.7-rc2
PHP PHP=4.3.7
PHP PHP=5.0.4
PHP PHP=4.0.7-rc1
PHP PHP=4.2.2
PHP PHP=4.4.2
PHP PHP=3.0.7
PHP PHP=4.3.2
PHP PHP=4.3.11
PHP PHP=3.0.6
PHP PHP=4.0.3-patch1
PHP PHP=3.0.17
PHP PHP=4.0.7
PHP PHP=4.0.2
PHP PHP=4.3.3
PHP PHP=5.0-rc3
PHP PHP=4.1.1
PHP PHP=3.0.15
PHP PHP=3.0.16
PHP PHP=4.4.3
PHP PHP=5.0.3
PHP PHP=3.0.10
PHP PHP=3.0.4
PHP PHP=4.2.3
PHP PHP=5.1.0
PHP PHP=4.0.1-patch1
PHP PHP=4.0
PHP PHP=4.0.1-patch2
PHP PHP=4.0.6
PHP PHP=5.2.0
PHP PHP=5.0-rc2
PHP PHP=4.1.2
PHP PHP=4.0.7-rc3
PHP PHP=4.3.1
PHP PHP=5.1.3
PHP PHP=3.0.18
PHP PHP=4.4.0
PHP PHP=4.3.10
PHP PHP=4.2.1
PHP PHP=4.0.1
PHP PHP=5.0.2
PHP PHP=3.0.12
PHP PHP=4.2
PHP PHP=4.4.1
PHP PHP=4.0.3
PHP PHP=3.0.14
PHP PHP=3.0.9
PHP PHP=3.0.3
PHP PHP=5.0.0
PHP PHP=4.3.8
PHP PHP=4.3.5
Trustix Secure Linux=3.0
Trustix Secure Linux=2.2
Remediation
Patch Available
Event History
Feb 13, 2007
CVE Published
11:28 PM
Feb 14, 2007
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0907?
CVE-2007-0907 is classified as having a severity that can lead to a denial of service due to a buffer underflow issue.
2
How do I fix CVE-2007-0907?
To fix CVE-2007-0907, upgrade to PHP version 5.2.1 or later to eliminate the vulnerability.
3
Which versions of PHP are affected by CVE-2007-0907?
PHP versions prior to 5.2.1, including 4.x and 3.x versions, are affected by CVE-2007-0907.
4
What is the nature of the vulnerability in CVE-2007-0907?
The vulnerability in CVE-2007-0907 involves a buffer underflow in the sapi_header_op function, allowing potential exploitation.
5
Is CVE-2007-0907 a remote vulnerability?
CVE-2007-0907 can be exploited remotely as it affects server-side code execution in PHP.