PHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile function on a file whose size is a multiple of the page size.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade mod_php4Upgrade php4-cliUpgrade php4Upgrade php4-nmsUpgrade mod_phpUpgrade php4-cgiUpgrade mod_php4-twigUpgrade php4-dtcUpgrade php4-horde | Dec 10, 2025 | Apr 10, 2005 |
| Php | — | Upgrade to PHP version 4.0.1 | Oct 1, 2012 | May 2, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub