Skip to content
Noroxi

libgd records

39 published records for vendor libgd.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
97.4%
Median publish → KEV
No record has entered KEV

All records

39 records
  • gdImageColorMatch in gd_color_match.c in the GD Graphics Library (aka LibGD) 2.2.5, as used in the imagecolormatch function in PHP before 5.

    HighCVSS 8.8Proof of conceptEPSS 71%

    libgd · libgdJan 26, 2019

  • Integer signedness error in GD Graphics Library 2.1.1 (aka libgd or libgd2) allows remote attackers to cause a denial of service (crash) or

    CriticalCVSS 9.8Proof of conceptEPSS 37%

    libgd · libgdApr 26, 2016

  • Integer underflow in the _gdContributionsAlloc function in gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.2.4 allows rem

    CriticalCVSS 9.8No exploitEPSS 11%

    libgd · libgdMar 15, 2017

  • Integer overflow in the gdImageWebpCtx function in gd_webp.c in the GD Graphics Library (aka libgd) through 2.2.3, as used in PHP through 7.

    CriticalCVSS 9.8No exploitEPSS 5%

    libgd · libgdSep 28, 2016

  • The _gdGetColors function in gd_gd.c in PHP 5.2.11 and 5.3.x before 5.3.1, and the GD Graphics Library 2.x, does not properly verify a certa

    CriticalCVSS 9.3No exploitEPSS 10%

    php · phpOct 19, 2009

  • Integer signedness error in the dynamicGetbuf function in gd_io_dp.c in the GD Graphics Library (aka libgd) through 2.2.3, as used in PHP be

    CriticalCVSS 9.8No exploitEPSS 5%

    libgd · libgdJan 4, 2017

  • Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have

    CriticalCVSS 9.8No exploitEPSS 4%

    libgd · libgdJan 26, 2017

  • The GD Graphics Library (aka LibGD) 2.2.5 has a double free in the gdImage*Ptr() functions in gd_gif_out.c, gd_jpeg.c, and gd_wbmp.c.

    CriticalCVSS 9.8No exploitEPSS 4%

    libgd · libgdJan 28, 2019

  • CVE-2016-5766
    37Monitor

    Integer overflow in the _gd2GetHeader function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 5.5.37

    HighCVSS 8.8No exploitEPSS 7%

    libgd · libgdAug 7, 2016

  • CVE-2016-5767
    37Monitor

    Integer overflow in the gdImageCreate function in gd.c in the GD Graphics Library (aka libgd) before 2.0.34RC1, as used in PHP before 5.5.37

    HighCVSS 8.8No exploitEPSS 7%

    libgd · libgdAug 7, 2016

  • CVE-2016-5116
    37Monitor

    gd_xbm.c in the GD Graphics Library (aka libgd) before 2.2.0, as used in certain custom PHP 5.5.x configurations, allows context-dependent a

    CriticalCVSS 9.1No exploitEPSS 4%

    libgd · libgdAug 7, 2016

  • Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remote Code Execution .

    HighCVSS 8.8No exploitEPSS 4%

    libgd · libgdAug 20, 2018

  • CVE-2016-9933
    32Monitor

    Stack consumption vulnerability in the gdImageFillToBorder function in gd.c in the GD Graphics Library (aka libgd) before 2.2.2, as used in

    HighCVSS 7.5No exploitEPSS 7%

    libgd · libgdJan 4, 2017

  • CVE-2016-6128
    32Monitor

    The gdImageCropThreshold function in gd_crop.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 7.0.9, allows remo

    HighCVSS 7.5No exploitEPSS 7%

    libgd · libgdAug 7, 2016

  • CVE-2017-6362
    32Monitor

    Double free vulnerability in the gdImagePngPtr function in libgd2 before 2.2.5 allows remote attackers to cause a denial of service via vect

    HighCVSS 7.5No exploitEPSS 5%

    libgd · libgdSep 7, 2017

  • Integer overflow in gd_io.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vecto

    HighCVSS 7.8No exploitEPSS 4%

    libgd · libgdMar 15, 2017

  • CVE-2017-6363
    32Monitor

    In the GD Graphics Library (aka LibGD) through 2.2.5, there is a heap-based buffer over-read in tiffWriter in gd_tiff.c.

    HighCVSS 8.1No exploitEPSS 1%

    libgd · libgdFeb 27, 2020

  • CVE-2013-7456
    31Monitor

    gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.1.1, as used in PHP before 5.5.36, 5.6.x before 5.6.22, and 7.x before 7.

    HighCVSS 7.6No exploitEPSS 4%

    libgd · libgdAug 7, 2016

  • CVE-2015-8877
    31Monitor

    The gdImageScaleTwoPass function in gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.2.0, as used in PHP before 5.6.12, us

    HighCVSS 7.5No exploitEPSS 4%

    libgd · libgdMay 21, 2016

  • gdImageClone in gd.c in libgd 2.1.0-rc2 through 2.2.5 has a NULL pointer dereference allowing attackers to crash an application via a specif

    HighCVSS 7.5No exploitEPSS 3%

    libgd · libgdFeb 11, 2020

  • gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free.

    HighCVSS 7.5No exploitEPSS 2%

    libgd · libgdAug 25, 2021

  • CVE-2016-6207
    28Monitor

    Integer overflow in the _gdContributionsAlloc function in gd_interpolation.c in GD Graphics Library (aka libgd) before 2.2.3 allows remote a

    MediumCVSS 6.5No exploitEPSS 6%

    libgd · libgdAug 12, 2016

  • CVE-2016-6132
    27Monitor

    The gdImageCreateFromTgaCtx function in the GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of servic

    MediumCVSS 6.5No exploitEPSS 3%

    libgd · libgdAug 12, 2016

  • CVE-2016-6214
    27Monitor

    gd_tga.c in the GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a

    MediumCVSS 6.5No exploitEPSS 3%

    libgd · libgdAug 12, 2016

  • CVE-2016-6161
    27Monitor

    The output function in gd_gif_out.c in the GD Graphics Library (aka libgd) allows remote attackers to cause a denial of service (out-of-boun

    MediumCVSS 6.5No exploitEPSS 3%

    libgd · libgdAug 12, 2016