[pkg-GD-devel] Bug#840805: libgd2: Stack Buffer Overflow in GD dynamicGetbuf

Salvatore Bonaccorso carnil at debian.org
Sat Oct 15 05:02:25 UTC 2016


Source: libgd2
Version: 2.1.0-5
Severity: grave
Tags: security upstream
Control: fixed -1 2.1.0-5+deb8u7

For tracking this issue. DSA-3693-1 included the
0019-Patch-for-security-bug-https-bugs.php.net-bug.php-id.patch patch
fixing a stack buffer overflow in dynamicGetbuf as per upstream commit
https://github.com/libgd/libgd/commit/53110871935244816bbb9d131da0bccff734bfe9

Reference: PHP Bug: https://bugs.php.net/bug.php?id=73280

CVE requested at:
http://www.openwall.com/lists/oss-security/2016/10/15/1

Regards,
Salvatore



More information about the pkg-GD-devel mailing list