{"id":"CVE-2017-9120","details":"PHP 7.x through 7.1.5 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a long string because of an Integer overflow in mysqli_real_escape_string.","modified":"2026-02-12T00:15:40.840849Z","published":"2018-08-02T15:29:00.277Z","related":["SUSE-SU-2018:2333-1","SUSE-SU-2018:2337-1","SUSE-SU-2022:4067-1","openSUSE-SU-2024:11167-1","openSUSE-SU-2024:11169-1"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:2519"},{"type":"ADVISORY","url":"https://bugs.php.net/bug.php?id=74544"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20181107-0003/"},{"type":"REPORT","url":"https://bugs.php.net/bug.php?id=74544"},{"type":"FIX","url":"https://bugs.php.net/bug.php?id=74544"},{"type":"EVIDENCE","url":"https://bugs.php.net/bug.php?id=74544"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/php/php-src","events":[{"introduced":"3c7824e16ec4c3cee417262445d2c2b66531c10f"},{"fixed":"afe3c74a79137e77750fc683ecb6a526e6845bb1"},{"introduced":"5dc92c2117cafc61daaaaa240fd46c3ac33872a4"},{"fixed":"55778e127668ded5a75a499b6a818987a3b00864"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-9120.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}