Vulnerability CVE-2019-6977


Published: 2019-01-26   Modified: 2019-01-27

Description:
gdImageColorMatch in gd_color_match.c in the GD Graphics Library (aka LibGD) 2.2.5, as used in the imagecolormatch function in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1, has a heap-based buffer overflow. This can be exploited by an attacker who is able to trigger imagecolormatch calls with crafted image data.

See advisories in our WLB2 database:
Topic
Author
Date
High
PHP 7.2 imagecolormatch() Out of Band Heap Write
Charles
09.04.2019

Type:

CWE-119

(Improper Restriction of Operations within the Bounds of a Memory Buffer)

CVSS2 => (AV:N/AC:M/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
6.8/10
6.4/10
8.6/10
Exploit range
Attack complexity
Authentication
Remote
Medium
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
PHP -> PHP 
Netapp -> Storage automation store 
Libgd -> Libgd 
Debian -> Debian linux 
Canonical -> Ubuntu linux 

 References:
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00025.html
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00031.html
http://packetstormsecurity.com/files/152459/PHP-7.2-imagecolormatch-Out-Of-Band-Heap-Write.html
http://php.net/ChangeLog-5.php
http://php.net/ChangeLog-7.php
http://www.securityfocus.com/bid/106731
https://bugs.php.net/bug.php?id=77270
https://lists.debian.org/debian-lts-announce/2019/01/msg00028.html
https://security.gentoo.org/glsa/201903-18
https://security.netapp.com/advisory/ntap-20190315-0003/
https://usn.ubuntu.com/3900-1/
https://www.debian.org/security/2019/dsa-4384
https://www.exploit-db.com/exploits/46677/

Copyright 2024, cxsecurity.com

 

Back to Top