~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
PublicDate: 2006-08-31
Candidate: CVE-2006-4484
References:
 http://www.ubuntu.com/usn/usn-342-1
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4484
Description:
 Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in
 the GD extension in PHP before 5.1.5 allows remote attackers to have an
 unknown impact via a GIF file with input_code_size greater than
 MAX_LWZ_BITS, which triggers an overflow when initializing the table array.
Ubuntu-Description:
Notes:
Bugs:
dapper_php5: released (5.1.2-1ubuntu3.9)
edgy_php5: not-affected
feisty_php5: not-affected
devel_php5: not-affected
upstream_php5: