CVE-2007-1380
Summary
| CVE | CVE-2007-1380 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-03-10 00:19:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | The php_binary serialization handler in the session extension in PHP before 4.4.5, and 5.x before 5.2.1, allows context-dependent attackers to obtain sensitive information (memory contents) via a serialized variable entry with a large length value, which triggers a buffer over-read. |
Risk And Classification
Primary CVSS: v2.0 5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:N/A:N
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
NoneAvailability
NoneAV:N/AC:L/Au:N/C:P/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Php | Php | 4.0 | All | All | All |
| Application | Php | Php | 4.0 | beta1 | All | All |
| Application | Php | Php | 4.0 | beta2 | All | All |
| Application | Php | Php | 4.0 | beta3 | All | All |
| Application | Php | Php | 4.0 | beta4 | All | All |
| Application | Php | Php | 4.0 | beta_4_patch1 | All | All |
| Application | Php | Php | 4.0 | rc1 | All | All |
| Application | Php | Php | 4.0 | rc2 | All | All |
| Application | Php | Php | 4.0.0 | All | All | All |
| Application | Php | Php | 4.0.1 | All | All | All |
| Application | Php | Php | 4.0.1 | patch1 | All | All |
| Application | Php | Php | 4.0.1 | patch2 | All | All |
| Application | Php | Php | 4.0.2 | All | All | All |
| Application | Php | Php | 4.0.3 | All | All | All |
| Application | Php | Php | 4.0.3 | patch1 | All | All |
| Application | Php | Php | 4.0.4 | All | All | All |
| Application | Php | Php | 4.0.4 | patch1 | All | All |
| Application | Php | Php | 4.0.5 | All | All | All |
| Application | Php | Php | 4.0.6 | All | All | All |
| Application | Php | Php | 4.0.7 | All | All | All |
| Application | Php | Php | 4.0.7 | rc1 | All | All |
| Application | Php | Php | 4.0.7 | rc2 | All | All |
| Application | Php | Php | 4.0.7 | rc3 | All | All |
| Application | Php | Php | 4.1.0 | All | All | All |
| Application | Php | Php | 4.1.1 | All | All | All |
| Application | Php | Php | 4.1.2 | All | All | All |
| Application | Php | Php | 4.2 | All | dev | All |
| Application | Php | Php | 4.2.0 | All | All | All |
| Application | Php | Php | 4.2.1 | All | All | All |
| Application | Php | Php | 4.2.2 | All | All | All |
| Application | Php | Php | 4.2.3 | All | All | All |
| Application | Php | Php | 4.3.0 | All | All | All |
| Application | Php | Php | 4.3.1 | All | All | All |
| Application | Php | Php | 4.3.10 | All | All | All |
| Application | Php | Php | 4.3.11 | All | All | All |
| Application | Php | Php | 4.3.2 | All | All | All |
| Application | Php | Php | 4.3.3 | All | All | All |
| Application | Php | Php | 4.3.4 | All | All | All |
| Application | Php | Php | 4.3.5 | All | All | All |
| Application | Php | Php | 4.3.6 | All | All | All |
| Application | Php | Php | 4.3.7 | All | All | All |
| Application | Php | Php | 4.3.8 | All | All | All |
| Application | Php | Php | 4.3.9 | All | All | All |
| Application | Php | Php | 4.4.0 | All | All | All |
| Application | Php | Php | 4.4.1 | All | All | All |
| Application | Php | Php | 4.4.2 | All | All | All |
| Application | Php | Php | 4.4.3 | All | All | All |
| Application | Php | Php | 4.4.4 | All | All | All |
| Application | Php | Php | 5.0 | rc1 | All | All |
| Application | Php | Php | 5.0 | rc2 | All | All |
| Application | Php | Php | 5.0 | rc3 | All | All |
| Application | Php | Php | 5.0.0 | All | All | All |
| Application | Php | Php | 5.0.0 | beta1 | All | All |
| Application | Php | Php | 5.0.0 | beta2 | All | All |
| Application | Php | Php | 5.0.0 | beta3 | All | All |
| Application | Php | Php | 5.0.0 | beta4 | All | All |
| Application | Php | Php | 5.0.0 | rc1 | All | All |
| Application | Php | Php | 5.0.0 | rc2 | All | All |
| Application | Php | Php | 5.0.0 | rc3 | All | All |
| Application | Php | Php | 5.0.1 | All | All | All |
| Application | Php | Php | 5.0.2 | All | All | All |
| Application | Php | Php | 5.0.3 | All | All | All |
| Application | Php | Php | 5.0.4 | All | All | All |
| Application | Php | Php | 5.0.5 | All | All | All |
| Application | Php | Php | 5.1.0 | All | All | All |
| Application | Php | Php | 5.1.1 | All | All | All |
| Application | Php | Php | 5.1.2 | All | All | All |
| Application | Php | Php | 5.1.3 | All | All | All |
| Application | Php | Php | 5.1.4 | All | All | All |
| Application | Php | Php | 5.1.5 | All | All | All |
| Application | Php | Php | 5.1.6 | All | All | All |
| Application | Php | Php | 5.2.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| HP Secure Web Server/Internet Express for Tru64 UNIX PHP Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| SUSE update for php4 and php5 - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| PHP PHP_Binary Heap Information Leak Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| HPSBMA02215 SSRT071423 rev.1 - HP System Management Homepage (SMH) for Linux and Windows Running PHP, Remote Execution of Arbitrary Code - c01056506 - HP Business Support Center | af854a3a-2127-422b-91ae-364da2661108 | h20000.www2.hp.com | |
| SUSE update for php - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Security Announcement | af854a3a-2127-422b-91ae-364da2661108 | www.novell.com | |
| HP System Management Homepage PHP Multiple Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| USN-455-1: PHP vulnerabilities | Ubuntu | af854a3a-2127-422b-91ae-364da2661108 | www.ubuntu.com | |
| Gentoo update for php - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Debian update for php5 - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| MOPB-10-2007:PHP php_binary Session Deserialization Information Leak Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.php-security.org | Exploit |
| Debian -- Security Information -- DSA-1282-1 php4 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| PHP < 4.4.5 / 5.2.1 php_binary Session Deserialization Information Leak | af854a3a-2127-422b-91ae-364da2661108 | www.exploit-db.com | |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| Gentoo Linux Documentation -- PHP: Multiple vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | security.gentoo.org | |
| Ubuntu update for php - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| HPSBTU02232 SSRT071429 rev.1 - Secure Web Server for HP Tru64 UNIX Powered by Apache (SWS) or HP Internet Express for Tru64 UNIX running PHP, Remote Arbitrary Code Execution, Unauthorized Disclosure of Information, or Denial of Service (DoS) - c01086137 - HP Business Support Center | af854a3a-2127-422b-91ae-364da2661108 | h20000.www2.hp.com | |
| Debian -- Security Information -- DSA-1283-1 php5 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| Debian update for php4 - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| SuSE Security announcements: [suse-security-announce] SUSE Security Announcement: php security problems (SUSE-SA:2007:020) | af854a3a-2127-422b-91ae-364da2661108 | lists.suse.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|---|---|---|
| Red Hat | 2007-05-11 | Mark J Cox | Our previous fixes for CVE-2007-0906 included a patch that also addressed the issue now given CVE name CVE-2007-1380. For a full list of versions that contained a fix for this issue please see: https://rhn.redhat.com/cve/CVE-2007-1380.html |
There are currently no legacy QID mappings associated with this CVE.