CVE-2015-8879
22.05.2016, 01:59
The odbc_bindcols function in ext/odbc/php_odbc.c in PHP before 5.6.12 mishandles driver behavior for SQL_WVARCHAR columns, which allows remote attackers to cause a denial of service (application crash) in opportunistic circumstances by leveraging use of the odbc_fetch_array function to access a certain type of Microsoft SQL Server table.Enginsight
Vendor | Product | Version |
---|---|---|
php | php | 𝑥 < 5.5.38 |
php | php | 5.6.0 ≤ 𝑥 < 5.6.12 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration