The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-03-21 14:55
Updated : 2017-01-07 02:59
NVD link : CVE-2014-2497
Mitre link : CVE-2014-2497
JSON object : View
Products Affected
php
- php
CWE
CWE-399
Resource Management Errors
