Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-2497

Опубликовано: 21 мар. 2014
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 4.3

Описание

The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.

РелизСтатусПримечание
devel

not-affected

2.1.0-5
esm-infra-legacy/trusty

not-affected

2.1.0-3ubuntu0.1
esm-infra/xenial

not-affected

2.1.0-5
lucid

ignored

end of life
precise

released

2.0.36~rc1~dfsg-6ubuntu2.1
quantal

ignored

end of life
saucy

ignored

end of life
trusty

released

2.1.0-3ubuntu0.1
trusty/esm

not-affected

2.1.0-3ubuntu0.1
upstream

released

2.1.0-4

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

uses system gd
lucid

not-affected

uses system gd
precise

not-affected

uses system gd
quantal

not-affected

uses system gd
saucy

not-affected

uses system gd
trusty

not-affected

uses system gd
trusty/esm

not-affected

uses system gd
upstream

needs-triage

utopic

not-affected

uses system gd

Показывать по

EPSS

Процентиль: 94%
0.13755
Средний

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.

nvd
около 11 лет назад

The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.

debian
около 11 лет назад

The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP ...

github
около 3 лет назад

The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.

fstec
почти 11 лет назад

Уязвимость программного обеспечения PHP, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 94%
0.13755
Средний

4.3 Medium

CVSS2