Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remote Code Execution . This attack appear to be exploitable via Specially Crafted Jpeg Image can trigger double free. This vulnerability appears to have been fixed in after commit ac16bdf2d41724b5a65255d4c28fb0ec46bc42f5.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1651-1 | libgd2 security update |
EUVD |
EUVD-2018-1892 | Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remote Code Execution . This attack appear to be exploitable via Specially Crafted Jpeg Image can trigger double free. This vulnerability appears to have been fixed in after commit ac16bdf2d41724b5a65255d4c28fb0ec46bc42f5. |
Ubuntu USN |
USN-3755-1 | GD vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T12:40:46.684Z
Reserved: 2018-07-29T00:00:00.000Z
Link: CVE-2018-1000222
No data.
Status : Modified
Published: 2018-08-20T20:29:01.347
Modified: 2024-11-21T03:39:58.010
Link: CVE-2018-1000222
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN