Array index error in gd_gif_in.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash and heap corruption) via large color index values in crafted image data, which results in a segmentation fault.
-
Package | Type | OS Name | OS Version | Affected Ranges | Fix Versions |
---|---|---|---|---|---|
debian/libwmf | deb | debian | 12 | >=0.2.12-5.1 | Not yet available |
debian/libgd2 | deb | debian | 13 | <2.0.35.dfsg-1 | 2.0.35.dfsg-1 |
debian/libgd2 | deb | debian | 12 | <2.0.35.dfsg-1 | 2.0.35.dfsg-1 |
debian/libgd2 | deb | debian | 11 | <2.0.35.dfsg-1 | 2.0.35.dfsg-1 |
debian/libgd2 | deb | debian | unstable | <2.0.35.dfsg-1 | 2.0.35.dfsg-1 |
debian/libgd2 | deb | debian | 10 | <2.0.35.dfsg-1 | 2.0.35.dfsg-1 |
debian/libwmf | deb | debian | 11 | >=0.2.8.4-17 | Not yet available |
debian/libwmf | deb | debian | unstable | >=0.2.13-1.1 | Not yet available |
debian/libwmf | deb | debian | 10 | >=0.2.8.4-14 | Not yet available |
debian/libwmf | deb | debian | 13 | >=0.2.13-1.1 | Not yet available |
debian/racket | deb | debian | 11 | <5.0.2-1 | 5.0.2-1 |
debian/racket | deb | debian | 13 | <5.0.2-1 | 5.0.2-1 |
debian/racket | deb | debian | unstable | <5.0.2-1 | 5.0.2-1 |
debian/racket | deb | debian | 12 | <5.0.2-1 | 5.0.2-1 |
debian/racket | deb | debian | 10 | <5.0.2-1 | 5.0.2-1 |
Severity and metrics
No CVSS data available from this source.
8.6
-
-
-