CVE-2007-2756

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/05/2007
Last modified:
09/04/2025

Description

The gdPngReadData function in libgd 2.0.34 allows user-assisted attackers to cause a denial of service (CPU consumption) via a crafted PNG image with truncated data, which causes an infinite loop in the png_read_info function in libpng.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libgd:libgd:2.0.34:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools