VDB
CVE-2007-3476
CVE-2007-3476
PUBLISHED
CVSS 4.300000190734863 MEDIUM
Array index error in gd_gif_in.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash and heap corruption) via large color index values in crafted image data, which results in a segmentation fault.
EPSS 2.46% · 83.2th percentile
Risk Scores
CVSS 2.0
4.300000190734863
EPSS Score
2.46%
83.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| gd_graphics_library | gdlib | 0 |
Timeline
- Jun 28, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 31, 2023 EPSS Score
References
- 37741 vdb
- http://bugs.libgd.org/?do=details&task_id=87 url
- DSA-1613 vendor-advisory
- http://www.libgd.org/ReleaseNote020035 url
- 26415 third-party-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=277421 url
- GLSA-200805-13 vendor-advisory
- 42813 third-party-advisory
- GLSA-200708-05 vendor-advisory
- 30168 third-party-advisory
- FEDORA-2007-692 vendor-advisory
- 25860 third-party-advisory
- 26272 third-party-advisory
- GLSA-200711-34 vendor-advisory
- FEDORA-2010-19022 vendor-advisory
- SUSE-SR:2007:015 vendor-advisory
- 2007-0024 vendor-advisory
- MDKSA-2007:164 vendor-advisory
- 29157 third-party-advisory
- oval:org.mitre.oval:def:10348 vdb
…and 17 more