CVE-2016-6912

Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via large width and height values.
Configurations

Configuration 1 (hide)

cpe:2.3:a:libgd:libgd:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:57

Type Values Removed Values Added
References () http://www.debian.org/security/2017/dsa-3777 - () http://www.debian.org/security/2017/dsa-3777 -
References () http://www.securityfocus.com/bid/95843 - () http://www.securityfocus.com/bid/95843 -
References () https://github.com/libgd/libgd/blob/gd-2.2.4/CHANGELOG.md - Release Notes, Patch () https://github.com/libgd/libgd/blob/gd-2.2.4/CHANGELOG.md - Patch, Release Notes
References () https://github.com/libgd/libgd/commit/a49feeae76d41959d85ee733925a4cf40bac61b2 - Patch, Vendor Advisory () https://github.com/libgd/libgd/commit/a49feeae76d41959d85ee733925a4cf40bac61b2 - Patch, Vendor Advisory

Information

Published : 2017-01-26 15:59

Updated : 2024-11-21 02:57


NVD link : CVE-2016-6912

Mitre link : CVE-2016-6912

CVE.ORG link : CVE-2016-6912


JSON object : View

Products Affected

libgd

  • libgd
CWE
CWE-415

Double Free