CVE Database
/

CVE-2007-1717

Back to search

CVE-2007-1717

Published: Mar 28, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

The mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 truncates e-mail messages at the first ASCIIZ ('\0') byte, which might allow context-dependent attackers to prevent intended information from being delivered in e-mail messages. NOTE: this issue might be security-relevant in cases when the trailing contents of e-mail messages are important, such as logging information or if the message is expected to be well-formed.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2007-2732
vdb-entry
x_refsource_VUPEN
25056
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2007-07-31
vendor-advisory
x_refsource_APPLE
GLSA-200705-19
vendor-advisory
x_refsource_GENTOO
23146
vdb-entry
x_refsource_BID
25159
vdb-entry
x_refsource_BID
25445
third-party-advisory
x_refsource_SECUNIA
SUSE-SA:2007:032
vendor-advisory
x_refsource_SUSE
26235
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now