ALPINE-CVE-2016-10168 PUBLISHED CVSS 7.800000190734863 HIGH

Integer overflow in gd_io.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vectors involving the number of horizontal and vertical chunks in an image.

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alpine:v3.4gd2.0.36_rc1-r5, 2.2.3-r1, 2.2.3-r0
Alpine:v3.5gd2.2.3-r1, 2.0.36_rc1-r4, 2.0.36_rc1-r5
Alpine:v3.3gd2.1.1-r2, 2.1.1-r1, 2.1.1-r0

Timeline

References

Open in Interactive Console →