CVE-2007-2756

N/A Unknown
Published: May 18, 2007 Modified: April 23, 2026
View on NVD

Description

The gdPngReadData function in libgd 2.0.34 allows user-assisted attackers to cause a denial of service (CPU consumption) via a crafted PNG image with truncated data, which causes an infinite loop in the png_read_info function in libpng.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/35788
Source: cve@mitre.org
http://osvdb.org/36643
Source: cve@mitre.org
http://bugs.libgd.org/?do=details&task_id=86
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://osvdb.org/35788
Source: af854a3a-2127-422b-91ae-364da2661108
http://osvdb.org/36643
Source: af854a3a-2127-422b-91ae-364da2661108
http://rhn.redhat.com/errata/RHSA-2007-0889.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25353
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25362
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25378
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25535
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25575
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25590
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25646
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25657
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25658
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25787
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/25855
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26048
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26231
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26390
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26871
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26895
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26930
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/26967
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27037
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27102
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27110
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27545
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29157
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/30168
Source: af854a3a-2127-422b-91ae-364da2661108
http://security.gentoo.org/glsa/glsa-200708-05.xml
Source: af854a3a-2127-422b-91ae-364da2661108
http://security.gentoo.org/glsa/glsa-200711-34.xml
Source: af854a3a-2127-422b-91ae-364da2661108
http://security.gentoo.org/glsa/glsa-200805-13.xml
Source: af854a3a-2127-422b-91ae-364da2661108
http://support.avaya.com/elmodocs2/security/ASA-2007-449.htm
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.gentoo.org/security/en/glsa/glsa-200710-02.xml
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.libgd.org/ReleaseNote020035
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.mandriva.com/security/advisories?name=MDKSA-2007:122
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.mandriva.com/security/advisories?name=MDKSA-2007:123
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.mandriva.com/security/advisories?name=MDKSA-2007:124
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.mandriva.com/security/advisories?name=MDKSA-2007:187
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.novell.com/linux/security/advisories/2007_13_sr.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.php.net/releases/5_2_3.php
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2007-0890.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2007-0891.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2008-0146.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/24089
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1018187
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.trustix.org/errata/2007/0019/
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.trustix.org/errata/2007/0023/
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.ubuntu.com/usn/usn-473-1
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/1904
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/1905
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/2016
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/2336
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/3386
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/34420
Source: af854a3a-2127-422b-91ae-364da2661108
https://issues.rpath.com/browse/RPL-1394
Source: af854a3a-2127-422b-91ae-364da2661108

124 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
6.8%
91th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

libgd