CVE-2007-1411
Buffer overflow in PHP 4.4.6 and earlier, and unspecified PHP 5 versions, allows local and possibly remote attackers to execute arbitrary code via long server name arguments to the (1) mssql_connect and (2) mssql_pconnect functions.
Date published : 2007-03-10
http://www.securityfocus.com/bid/22832
http://www.securityfocus.com/archive/1/462010/100/0/threaded