CVE-2003-1302

PHP - Denial of Service via IMAP Header with Excessive Backslashes

Title source: llm
STIX 2.1

Description

The IMAP functionality in PHP before 4.3.1 allows remote attackers to cause a denial of service via an e-mail message with a (1) To or (2) From header with an address that contains a large number of "\" (backslash) characters.

References (2)

Core 2
Core References
Exploit x_refsource_confirm
http://bugs.php.net/bug.php?id=22048

Scores

EPSS 0.0058
EPSS Percentile 69.1%

Details

Status published
Products (6)
php/php 4.2
php/php 4.2.0
php/php 4.2.1
php/php 4.2.2
php/php 4.2.3
php/php 4.3.0
Published Dec 31, 2003
Tracked Since Feb 18, 2026