The LZW decoding in the gdImageCreateFromGifPtr function in the Thomas Boutell graphics draw (GD) library (aka libgd) 2.0.33 allows remote attackers to cause a denial of service (CPU consumption) via malformed GIF data that causes an infinite loop.
References
Configurations
History
No history.
Information
Published : 2006-06-08 16:06
Updated : 2018-10-03 21:43
NVD link : CVE-2006-2906
Mitre link : CVE-2006-2906
CVE.ORG link : CVE-2006-2906
JSON object : View
Products Affected
thomas_boutell
- graphics_draw_library
CWE