Msrc Cm1 Gd 2.3.3-1 On Cbl Mariner 1.0 vulnerabilities
3 known vulnerabilities affecting msrc/cm1_gd_2.3.3-1_on_cbl_mariner_1.0.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2021-40812MEDIUMCVSS 6.52021-09-14
CVE-2021-40812 [MEDIUM] CWE-125 The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and gdPutBuf return value checks.
The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and gdPutBuf return value checks.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main bene
msrc
CVE-2021-40145HIGHCVSS 7.52021-08-10
CVE-2021-40145 [HIGH] CWE-415 gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to
gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete and should only be used for developmen
msrc
CVE-2021-38115MEDIUMCVSS 6.52021-08-10
CVE-2021-38115 [MEDIUM] CWE-125 read_header_tga in gd_tga.c in the GD Graphics Library (aka LibGD) through 2.3.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file.
read_header_tga in gd_tga.c in the GD Graphics Library (aka LibGD) through 2.3.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potent
msrc