First published: Wed Aug 04 2021(Updated: )
read_header_tga in gd_tga.c in the GD Graphics Library (aka LibGD) through 2.3.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libgd Libgd | <=2.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2021-38115.
The severity of CVE-2021-38115 is medium with a CVSS score of 6.5.
CVE-2021-38115 affects Libgd version up to and including 2.3.2.
CVE-2021-38115 allows remote attackers to cause a denial of service through an out-of-bounds read.
Yes, the fix for CVE-2021-38115 is available in the latest version of Libgd. It is recommended to upgrade to version 2.3.3 or higher.