CVE-2010-3064 PUBLISHED CVSS 6.800000190734863 MEDIUM

Stack-based buffer overflow in the php_mysqlnd_auth_write function in the Mysqlnd extension in PHP 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) username or (2) database name argument to the (a) mysql_connect or (b) mysqli_connect function.

EPSS 1.09% · 77.8th percentile

Risk Scores

CVSS v2.0
6.800000190734863
EPSS Score
1.09%
77.8th percentile

Affected Products

VendorProductVersions
phpphp5.3.0, 5.3.1, 5.3.2
n/an/an/a

Timeline

References

Open in Interactive Console →