oss-sec mailing list archives

Re: CVE Request: gd buffer read overflow in gd_gif_in.c


From: Moritz Muehlenhoff <jmm () debian org>
Date: Mon, 23 Mar 2015 18:52:43 +0100

On Mon, Mar 23, 2015 at 10:59:23AM -0400, Francisco Alonso wrote:
Hi,

Could a CVE be please assigned to the following issue? (in case it was
not requested to MITRE before):

gd: buffer read overflow in gd_gif_in.c
https://bitbucket.org/libgd/gd-libgd/commits/47eb44b2e90ca88a08dca9f9a1aa9041e9587f43
https://bugs.php.net/bug.php?id=68601
https://bugzilla.redhat.com/show_bug.cgi?id=1188639

Adding security () php net to CC.

Cheers,
        Moritz


Current thread: