High severity7.5NVD Advisory· Published May 22, 2016· Updated Jun 17, 2026
CVE-2015-8879
CVE-2015-8879
Description
The odbc_bindcols function in ext/odbc/php_odbc.c in PHP before 5.6.12 mishandles driver behavior for SQL_WVARCHAR columns, which allows remote attackers to cause a denial of service (application crash) in opportunistic circumstances by leveraging use of the odbc_fetch_array function to access a certain type of Microsoft SQL Server table.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
21- osv-coords19 versionspkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Desktop%2012pkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP1pkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Web%20and%20Scripting%2012pkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012pkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP1pkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012pkg:rpm/suse/imap&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP1pkg:rpm/suse/php53&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP2-LTSSpkg:rpm/suse/php53&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-LTSSpkg:rpm/suse/php53&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-TERADATApkg:rpm/suse/php53&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4pkg:rpm/suse/php53&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4pkg:rpm/suse/php53&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4pkg:rpm/suse/php53&distro=SUSE%20Manager%202.1pkg:rpm/suse/php53&distro=SUSE%20Manager%20Proxy%202.1pkg:rpm/suse/php53&distro=SUSE%20OpenStack%20Cloud%205pkg:rpm/suse/php5&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Web%20and%20Scripting%2012pkg:rpm/suse/php5&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012pkg:rpm/suse/php5&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP1
< 2007e_suse-19.1+ 18 more
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 2007e_suse-19.1
- (no CPE)range: < 5.3.17-47.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.3.17-71.1
- (no CPE)range: < 5.5.14-64.5
- (no CPE)range: < 5.5.14-64.5
- (no CPE)range: < 5.5.14-64.5
Patches
Vulnerability mechanics
References
3- bugs.php.net/bug.phpnvdExploitVendor Advisory
- rhn.redhat.com/errata/RHSA-2016-2750.htmlnvdThird Party Advisory
- www.php.net/ChangeLog-5.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.