PHP before 5.3.4 accepts the \0 character in a pathname, which might allow context-dependent attackers to bypass intended access restrictions by placing a safe file extension after this character, as demonstrated by .php\0.jpg at the end of the argument to the file_exists function.
References
Link Providers
https://www.spirityenterprise.com/virtual-ciso spirity
http://bugs.php.net/39863 cve-icon cve-icon
http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html cve-icon cve-icon
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/158616.html cve-icon cve-icon
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/158915.html cve-icon cve-icon
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/159031.html cve-icon cve-icon
http://marc.info/?l=bugtraq&m=132871655717248&w=2 cve-icon cve-icon
http://marc.info/?l=bugtraq&m=133469208622507&w=2 cve-icon cve-icon
http://openwall.com/lists/oss-security/2010/11/18/4 cve-icon cve-icon
http://openwall.com/lists/oss-security/2010/11/18/5 cve-icon cve-icon
http://openwall.com/lists/oss-security/2010/12/09/10 cve-icon cve-icon
http://openwall.com/lists/oss-security/2010/12/09/11 cve-icon cve-icon
http://openwall.com/lists/oss-security/2010/12/09/9 cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2013-1307.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2013-1615.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2014-0311.html cve-icon cve-icon
http://secunia.com/advisories/55078 cve-icon cve-icon
http://support.apple.com/kb/HT4581 cve-icon cve-icon
http://svn.php.net/viewvc?view=revision&revision=305412 cve-icon cve-icon
http://svn.php.net/viewvc?view=revision&revision=305507 cve-icon cve-icon
http://www.madirish.net/?article=436 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDVSA-2010:254 cve-icon cve-icon
http://www.php.net/ChangeLog-5.php cve-icon cve-icon
http://www.php.net/archive/2010.php#id2010-12-10-1 cve-icon cve-icon
http://www.php.net/releases/5_3_4.php cve-icon cve-icon
http://www.securityfocus.com/bid/44951 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2006-7243 cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12569 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2006-7243 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T20:57:41.063Z

Reserved: 2010-12-09T00:00:00

Link: CVE-2006-7243

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2011-01-18T20:00:10.580

Modified: 2025-04-11T00:51:21.963

Link: CVE-2006-7243

cve-icon Redhat

Severity : Moderate

Publid Date: 2006-12-18T00:00:00Z

Links: CVE-2006-7243 - Bugzilla