9.3
CVE-2009-3546
- EPSS 10.21%
- Veröffentlicht 19.10.2009 20:00:00
- Zuletzt bearbeitet 16.06.2026 23:11:49
- Erkennungen
The _gdGetColors function in gd_gd.c in PHP 5.2.11 and 5.3.x before 5.3.1, and the GD Graphics Library 2.x, does not properly verify a certain colorsTotal structure member, which might allow remote attackers to conduct buffer overflow or buffer over-read attacks via a crafted GD file, a different vulnerability than CVE-2009-3293. NOTE: some of these details are obtained from third party information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Libgd ≫ Gd Graphics Library Version 2.0.33
Libgd ≫ Gd Graphics Library Version 2.0.34
Libgd ≫ Gd Graphics Library Version 2.0.34 Update rc1
Libgd ≫ Gd Graphics Library Version 2.0.34 Update rc2
Libgd ≫ Gd Graphics Library Version 2.0.35
Libgd ≫ Gd Graphics Library Version 2.0.35 Update rc1
Libgd ≫ Gd Graphics Library Version 2.0.35 Update rc2
Libgd ≫ Gd Graphics Library Version 2.0.35 Update rc3
Libgd ≫ Gd Graphics Library Version 2.0.35 Update rc4
Libgd ≫ Gd Graphics Library Version 2.0.35 Update rc5
Libgd ≫ Gd Graphics Library Version 2.0.36 Update rc1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 10.21% | 0.952 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://marc.info/?l=oss-security&m=125562113503923&w=2
http://secunia.com/advisories/37069
http://secunia.com/advisories/37080
http://secunia.com/advisories/38055
http://svn.php.net/viewvc?view=revision&revision=289557
http://www.mandriva.com/security/advisories?name=MDVSA-2009:285
http://www.openwall.com/lists/oss-security/2009/11/20/5
http://www.redhat.com/support/errata/RHSA-2010-0003.html
http://www.securityfocus.com/bid/36712
http://www.vupen.com/english/advisories/2009/2929
http://www.vupen.com/english/advisories/2009/2930
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11199