CVE-2007-4825

Publication date 12 September 2007

Last updated 24 July 2024


Ubuntu priority

Negligible

Why this priority?

Description

Directory traversal vulnerability in PHP 5.2.4 and earlier allows attackers to bypass open_basedir restrictions and possibly execute arbitrary code via a .. (dot dot) in the dl function.

Read the notes from the security team

Status

Package Ubuntu Release Status
php5 8.04 LTS hardy
Not affected
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life, was needed

Notes


kees

open_basedir not supported.