CVE-2007-2756
The gdPngReadData function in libgd 2.0.34 allows user-assisted attackers to cause a denial of service (CPU consumption) via a crafted PNG image with truncated data, which causes an infinite loop in the png_read_info function in libpng.
- Libgd
- = 2.0.34
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 4.3% (90th percentile)
- NVD status
- Modified
- Published
- 2007-05-18
CVE-2007-2756 at NVD
1 known exploit for CVE-2007-2756
Proof-of-concept code and exploit modules indexed by Sploitus