Integer overflow in the substr_compare function in PHP 5.2.1 and earlier allows context-dependent attackers to read sensitive memory via a large value in the length argument, a different vulnerability than CVE-2006-1991.
| Software | From | Fixed in |
|---|---|---|
| php / php | - | 5.2.1.x |