Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-40145

Опубликовано: 26 авг. 2021
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete, and should only be used for development and testing purposes.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libgd:libgd:*:*:*:*:*:*:*:*
Версия до 2.3.2 (включая)

EPSS

Процентиль: 70%
0.00645
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-415

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 4 лет назад

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete, and should only be used for development and testing purposes.

CVSS3: 7.5
msrc
около 4 лет назад

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete and should only be used for development and testing purposes.

CVSS3: 7.5
debian
больше 4 лет назад

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) throu ...

CVSS3: 7.5
github
больше 3 лет назад

** DISPUTED ** gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete, and should only be used for development and testing purposes."

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость компонента gd_gd2.c графической библиотеки LibGD, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 70%
0.00645
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-415