Description
A vulnerability has been reported for PHP versions 4.2.0 and 4.2.1.The vulnerability is the result of the PHP interpreter incorrectly parsing MIME headers when HTTP POST commands are received. When PHP receives a malformed POST request, it generates an error condition that is improperly handled. As a result, the attacker may cause the web server to crash and possibly execute supplied code.
Affected PHP versions (4.2.0, 4.2.1).
Remediation
Upgrade PHP to the latest version.
References
Related Vulnerabilities
WordPress Plugin ResAds Multiple Cross-Site Scripting Vulnerabilities (1.0.1)
Plone CMS Improper Input Validation Vulnerability (CVE-2013-4199)
Sqlite NULL Pointer Dereference Vulnerability (CVE-2019-19926)
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-17774)
WordPress Plugin NextScripts:Social Networks Auto-Poster Cross-Site Scripting (4.3.23)