1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
|
PublicDate: 2006-08-31
Candidate: CVE-2006-4484
References:
http://www.ubuntu.com/usn/usn-342-1
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4484
Description:
Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in
the GD extension in PHP before 5.1.5 allows remote attackers to have an
unknown impact via a GIF file with input_code_size greater than
MAX_LWZ_BITS, which triggers an overflow when initializing the table array.
Ubuntu-Description:
Notes:
Bugs:
dapper_php5: released (5.1.2-1ubuntu3.9)
edgy_php5: not-affected
feisty_php5: not-affected
devel_php5: not-affected
upstream_php5:
|