Revision Date: | 2013-04-29 | Version: | 11 |
Title: | Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941. |
Description: | Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941. |
Family: | unix | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2004-0990
|
Platform(s): | CentOS Linux 3 Red Hat Enterprise Linux 3
| Product(s): | |
Definition Synopsis |
RHEL3 or CentOS3 The operating system installed on the system is Red Hat Enterprise Linux 3
OR CentOS Linux 3.x
AND Configuration section
gd is earlier than 0:1.8.4-12.3.1
OR gd-devel is earlier than 0:1.8.4-12.3.1
OR gd-progs is earlier than 0:1.8.4-12.3.1
|