CVE-2006-5706

PHP < 5.2.0 - Local open_basedir Restriction Bypass via chdir and tempnam Functions

Title source: llm
STIX 2.1

Description

Unspecified vulnerabilities in PHP, probably before 5.2.0, allow local users to bypass open_basedir restrictions and perform unspecified actions via unspecified vectors involving the (1) chdir and (2) tempnam functions. NOTE: the tempnam vector might overlap CVE-2006-1494.

References (2)

Core 2
Core References
Release Notes x_refsource_misc
http://www.php.net/releases/5_2_0.php
Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-375-1

Scores

EPSS 0.0005
EPSS Percentile 15.5%

Details

Status published
Products (14)
php/php 5.0 rc1 (3 CPE variants)
php/php 5.0.0
php/php 5.0.1
php/php 5.0.2
php/php 5.0.3
php/php 5.0.4
php/php 5.0.5
php/php 5.1.0
php/php 5.1.1
php/php 5.1.2
... and 4 more
Published Nov 04, 2006
Tracked Since Feb 18, 2026