ALPINE-CVE-2016-6912 PUBLISHED CVSS 9.800000190734863 CRITICAL

Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via large width and height values.

Risk Scores

CVSS v3.0
9.800000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alpine:v3.4gd2.0.36_rc1-r5, 2.0.36_rc1-r6, 2.0.36_rc1-r7
Alpine:v3.3gd2.1.0-r1, 2.0.35-r0, 2.0.35-r1
Alpine:v3.5gd0, 2.0.35-r0, 2.0.35-r1

Timeline

References

Open in Interactive Console →