Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Onur Taslioglu

#32825of 53,633
7.8Total CVSS
Vulnerabilities · 1
PT-2016-3099
7.8
2016-12-31
Gd · Gd Graphics Library · CVE-2016-10168
**Name of the Vulnerable Software and Affected Versions** GD Graphics Library versions prior to 2.2.4 **Description** The issue is caused by an integer overflow in the gd io.c component of the GD Graphics Library. This can be exploited by a remote attacker to achieve an unspecified impact by manipulating the number of horizontal and vertical elements in an image. **Recommendations** For versions prior to 2.2.4, update to version 2.2.4 or later to resolve the issue. As a temporary workaround, consider restricting the processing of images with large numbers of horizontal and vertical chunks to minimize the risk of exploitation.