#38322 [Fbk->Opn]: reading past array in sscanf leads to arbitary code execution

2006-08-04 Thread heintz at hotmail dot com
ID: 38322 User updated by: heintz at hotmail dot com Reported By: heintz at hotmail dot com -Status: Feedback +Status: Open Bug Type: Strings related Operating System: all PHP Version: 5.1.4 New Comment: the checkformat function checks

#38322 [NEW]: reading past array in sscanf leads to arbitary code execution

2006-08-03 Thread heintz at hotmail dot com
From: heintz at hotmail dot com Operating system: all PHP version: 5.1.4 PHP Bug Type: Strings related Bug description: reading past array in sscanf leads to arbitary code execution Description: ext/standard/scanf.c line ~887 --- if (numVars