First published: Thu Aug 26 2021(Updated: )
** DISPUTED ** gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete, and should only be used for development and testing purposes."
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libgd Libgd | <=2.3.2 | |
<=2.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-40145 is a vulnerability in the GD Graphics Library (LibGD) through version 2.3.2 that allows for a double free.
CVE-2021-40145 has a severity of 7.5 (high).
CVE-2021-40145 affects LibGD version 2.3.2.
Yes, a fix for CVE-2021-40145 is available.
More information about CVE-2021-40145 can be found at the following references: [link1], [link2], [link3].