Vulnerabilities > GD Graphics Library

DATE CVE VULNERABILITY TITLE RISK
2007-06-28 CVE-2007-3478 Race Condition vulnerability in GD Graphics Library Gdlib
Race condition in gdImageStringFTEx (gdft_draw_bitmap) in gdft.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via unspecified vectors, possibly involving truetype font (TTF) support.
4.3
2007-06-28 CVE-2007-3476 Numeric Errors vulnerability in GD Graphics Library Gdlib
Array index error in gd_gif_in.c in the GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash and heap corruption) via large color index values in crafted image data, which results in a segmentation fault.
4.3
2007-06-28 CVE-2007-3475 Multiple vulnerability in GD Graphics Library
The GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via a GIF image that has no global color map.
4.3
2005-03-01 CVE-2004-0990 Remote Integer Overflow vulnerability in GD Graphics Library
Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941.
network
low complexity
gd-graphics-library openpkg gentoo suse trustix
critical
10.0
2005-02-09 CVE-2004-0941 Remote Buffer overflow vulnerability in GD Graphics Library
Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.
network
low complexity
gd-graphics-library trustix
critical
10.0