CVE-2007-3475: Medium severity GD Graphics Library Gdlib vulnerability
Published Jun 28, 2007
·Updated
The GD Graphics Library (libgd) before 2.0.35 allows user-assisted remote attackers to cause a denial of service (crash) via a GIF image that has no global color map.
Affected Software
1 affected component
GD Graphics Library Gdlib<=2.0.34
Remediation
Patch Available
Event History
Jun 28, 2007
CVE Published
06:30 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3475?
CVE-2007-3475 is classified as a moderate severity vulnerability that can lead to a denial of service.
2
How do I fix CVE-2007-3475?
To fix CVE-2007-3475, upgrade to version 2.0.35 or later of the GD Graphics Library.
3
What causes the issue in CVE-2007-3475?
The issue in CVE-2007-3475 is caused by a GIF image that lacks a global color map, which may lead to a crash.
4
Is CVE-2007-3475 remote exploitative?
Yes, CVE-2007-3475 can be exploited by remote attackers but requires user interaction to trigger the vulnerability.
5
Which versions of the GD Graphics Library are affected by CVE-2007-3475?
Versions of the GD Graphics Library prior to 2.0.35, specifically up to 2.0.34, are affected by CVE-2007-3475.