Security Advisory

CVE-2006-4484

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-08-31 21:00:00
Last updated 2024-08-07 19:14:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in the GD extension in PHP before 5.1.5 allows remote attackers to have an unknown impact via a GIF file with input_code_size greater than MAX_LWZ_BITS, which triggers an overflow when initializing the table array.