CVE-2016-6207

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
12/08/2016
Last modified:
12/04/2025

Description

Integer overflow in the _gdContributionsAlloc function in gd_interpolation.c in GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds memory write or memory consumption) via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libgd:libgd:*:*:*:*:*:*:*:* 2.2.2 (including)
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*
cpe:2.3:a:php:php:*:*:*:*:*:*:*:* 5.5.0 (including) 5.5.38 (excluding)
cpe:2.3:a:php:php:*:*:*:*:*:*:*:* 5.6.0 (including) 5.6.24 (excluding)
cpe:2.3:a:php:php:*:*:*:*:*:*:*:* 7.0.0 (including) 7.0.9 (excluding)