CVE-2007-0909
Multiple format string vulnerabilities in PHP before 5.2.1 might allow attackers to execute arbitrary code via format string specifiers to (1) all of the *print functions on 64-bit systems, and (2) the odbc_result_all function.
Date published : 2007-02-13
http://www.securityfocus.com/bid/22496
http://www.securityfocus.com/archive/1/461462/100/0/threaded