Description
The LZW decoding in the gdImageCreateFromGifPtr function in the Thomas Boutell graphics draw (GD) library (aka libgd) 2.0.33 allows remote attackers to cause a denial of service (CPU consumption) via malformed GIF data that causes an infinite loop.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1117-1 | New libgd2 packages fix denial of service |
Ubuntu USN |
USN-298-1 | libgd2 vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:06:27.176Z
Reserved: 2006-06-08T00:00:00.000Z
Link: CVE-2006-2906
No data.
Status : Deferred
Published: 2006-06-08T16:06:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-2906
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
Ubuntu USN