This Entry needs help! It is only 30% Complete. Click the edit link above to add more information.
Contributing is fast and easy, and benefits the entire security community.
Description
(Description Provided by CVE) : The wordwrap function in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, does not properly use the breakcharlen variable, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash, or infinite loop) via certain arguments, as demonstrated by a 'chr(0), 0, ""' argument set.
Classification
Attack Type:
Denial of Service
Impact:
Loss of Availability
Solution
Upgrade to version 5.2.4 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.