DSA-3215-1 libgd2 -- libgd2ID: oval:org.secpod.oval:def:602029 | Date: (C)2015-04-07 (M)2024-02-19 |
Class: PATCH | Family: unix |
Multiple vulnerabilities were discovered in libgd2, a graphics library: CVE-2014-2497 The gdImageCreateFromXpm function would try to dereference a NULL pointer when reading an XPM file with a special color table. This could allow remote attackers to cause a denial of service via crafted XPM files. CVE-2014-9709 Importing an invalid GIF file using the gdImageCreateFromGif function would cause a read buffer overflow that could allow remote attackers to cause a denial of service via crafted GIF files.
Product: |
libgd2-noxpm-dev |
libgd2-xpm-dev |