Description
Integer overflow in the msg_receive function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1, on FreeBSD and possibly other platforms, allows context-dependent attackers to execute arbitrary code via certain maxsize values, as demonstrated by 0xffffffff.
Remediation
References
Related Vulnerabilities
Liferay Portal Missing Authorization Vulnerability (CVE-2023-3426)
Apache HTTP Server Cryptographic Issues Vulnerability (CVE-2009-3555)
WordPress Plugin Events Made Easy PHP Object Injection (2.0.52)
WordPress Plugin Captcha by BestWebSoft Cross-Site Scripting (4.2.9)
WordPress Plugin ToolBar to Share Cross-Site Request Forgery (2.0)