Integer overflow in the 16 bit variable reference counter in PHP 4 allows context-dependent attackers to execute arbitrary code by overflowing this counter, which causes the same variable to be destroyed twice, a related issue to CVE-2007-1286.
http://www.novell.com/linux/security/advisories/2007_32_php.html
http://security.gentoo.org/glsa/glsa-200703-21.xml
http://www.securityfocus.com/bid/22765
http://www.php-security.org/MOPB/MOPB-01-2007.html
http://www.osvdb.org/32770
http://secunia.com/advisories/25056
http://secunia.com/advisories/24606
Source: Mitre, NVD
Published: 2007-03-10
Updated: 2026-06-16
Base Score: 10
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
Severity: Critical
Base Score: 9.8
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS: 0.15195