Back

HIGH

PHP crash in crypt() from long salt

Published Aug 25, 2011

Description

Buffer overflow in the crypt function in PHP before 5.3.7 allows context-dependent attackers to have an unspecified impact via a long salt argument, a different vulnerability than CVE-2011-2483.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of php as shipped with Red Hat Enterprise Linux 4, 5, or 6. This issue did not affect the version of php53 as shipped with Red Hat Enterprise Linux 5.

Metrics

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 25, 2011
Updated Aug 6, 2024
Reserved Aug 25, 2011
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Aug 17, 2011