CVE-2007-3474: Low severity Libgd GD Graphics Library vulnerability
Published Jun 28, 2007
·Updated
Multiple unspecified vulnerabilities in the GIF reader in the GD Graphics Library (libgd) before 2.0.35 have unspecified impact and user-assisted remote attack vectors.
Affected Software
9 affected components
Libgd GD Graphics Library<=2.0.35
Libgd GD Graphics Library=2.0.33
Libgd GD Graphics Library=2.0.34
Libgd GD Graphics Library=2.0.34-rc1
Libgd GD Graphics Library=2.0.34-rc2
Libgd GD Graphics Library=2.0.35-rc1
Libgd GD Graphics Library=2.0.35-rc2
Libgd GD Graphics Library=2.0.35-rc3
Libgd GD Graphics Library=2.0.35-rc4
Remediation
Patch Available
Event History
Jun 28, 2007
CVE Published
06:30 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3474?
The severity of CVE-2007-3474 is currently unspecified, but it is associated with user-assisted remote attack vectors.
2
How do I fix CVE-2007-3474?
To fix CVE-2007-3474, you should upgrade the GD Graphics Library to version 2.0.35 or later.
3
What versions of the GD Graphics Library are affected by CVE-2007-3474?
CVE-2007-3474 affects versions 2.0.34-rc2, 2.0.33, 2.0.34-rc1, and earlier versions of the GD Graphics Library.
4
What type of attacks are possible due to CVE-2007-3474?
CVE-2007-3474 allows for unspecified impact and user-assisted remote attack vectors.
5
Is CVE-2007-3474 still a concern for current software?
While CVE-2007-3474 was identified in 2007, systems using affected versions of the GD library may still be vulnerable if not updated.