Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2007-0455

Опубликовано: 26 янв. 2007
Источник: redhat

Описание

Buffer overflow in the gdImageStringFTEx function in gdft.c in GD Graphics Library 2.0.33 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted string with a JIS encoded font.

Отчет

Red Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=234312 The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4libwmfWill not fix
Red Hat Enterprise Linux 5libwmfWill not fix
Red Hat Enterprise Linux 6libwmfWill not fix
Red Hat Enterprise Linux 3phpFixedRHSA-2007:015516.04.2007
Red Hat Enterprise Linux 4phpFixedRHSA-2007:015516.04.2007
Red Hat Enterprise Linux 4gdFixedRHSA-2008:014628.02.2008
Red Hat Enterprise Linux 5phpFixedRHSA-2007:015320.04.2007
Red Hat Enterprise Linux 5gdFixedRHSA-2008:014628.02.2008
Red Hat Web Application Stack for RHEL 4phpFixedRHSA-2007:016216.04.2007

Показывать по

Дополнительная информация

Статус:

Low

Связанные уязвимости

ubuntu
около 19 лет назад

Buffer overflow in the gdImageStringFTEx function in gdft.c in GD Graphics Library 2.0.33 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted string with a JIS encoded font.

nvd
около 19 лет назад

Buffer overflow in the gdImageStringFTEx function in gdft.c in GD Graphics Library 2.0.33 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted string with a JIS encoded font.

debian
около 19 лет назад

Buffer overflow in the gdImageStringFTEx function in gdft.c in GD Grap ...

github
почти 4 года назад

Buffer overflow in the gdImageStringFTEx function in gdft.c in GD Graphics Library 2.0.33 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted string with a JIS encoded font.

oracle-oval
почти 18 лет назад

ELSA-2008-0146: Moderate: gd security update (MODERATE)