First published: Thu Jun 28 2007(Updated: )
The GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via a GIF image that has no global color map.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GD Graphics Library | <=2.0.34 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3475 is classified as a moderate severity vulnerability that can lead to a denial of service.
To fix CVE-2007-3475, upgrade to version 2.0.35 or later of the GD Graphics Library.
The issue in CVE-2007-3475 is caused by a GIF image that lacks a global color map, which may lead to a crash.
Yes, CVE-2007-3475 can be exploited by remote attackers but requires user interaction to trigger the vulnerability.
Versions of the GD Graphics Library prior to 2.0.35, specifically up to 2.0.34, are affected by CVE-2007-3475.