Gd Graphics Library Gdlib vulnerabilities

5 known vulnerabilities affecting gd_graphics_library/gdlib.

Total CVEs
5
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2007-3478MEDIUMCVSS 4.3≤ 2.0.342007-06-28
CVE-2007-3478 [MEDIUM] CWE-362 CVE-2007-3478: Race condition in gdImageStringFTEx (gdft_draw_bitmap) in gdft.c in the GD Graphics Library (libgd) Race condition in gdImageStringFTEx (gdft_draw_bitmap) in gdft.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via unspecified vectors, possibly involving truetype font (TTF) support.
nvd
CVE-2007-3475MEDIUMCVSS 4.3≤ 2.0.342007-06-28
CVE-2007-3475 [MEDIUM] CVE-2007-3475: The GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denia The GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via a GIF image that has no global color map.
nvd
CVE-2007-3476MEDIUMCVSS 4.3≤ 2.0.342007-06-28
CVE-2007-3476 [MEDIUM] CWE-189 CVE-2007-3476: Array index error in gd_gif_in.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assist Array index error in gd_gif_in.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash and heap corruption) via large color index values in crafted image data, which results in a segmentation fault.
nvd
CVE-2004-0990CRITICALCVSS 10.0PoCv1.8.4v2.0.1+8 more2005-03-01
CVE-2004-0990 [CRITICAL] CVE-2004-0990: Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows r Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-20
nvd
CVE-2004-0941CRITICALCVSS 10.0v1.8.4v2.0.1+8 more2005-02-09
CVE-2004-0941 [CRITICAL] CVE-2004-0941: Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote att Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.
nvd