CVE-2003-1303

PHP - Buffer Overflow in IMAP Fetch Overview via Long Email Address

Title source: llm
STIX 2.1

Description

Buffer overflow in the imap_fetch_overview function in the IMAP functionality (php_imap.c) in PHP before 4.3.3 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long e-mail address in a (1) To or (2) From header.

References (3)

Core 3
Core References
Exploit x_refsource_confirm
http://bugs.php.net/bug.php?id=24150
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10346

Scores

EPSS 0.0135
EPSS Percentile 80.3%

Details

Status published
Products (3)
php/php 4.3.0
php/php 4.3.1
php/php 4.3.2
Published Dec 31, 2003
Tracked Since Feb 18, 2026