Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2007-2756

The gdPngReadData function in libgd 2.0.34 allows user-assisted attackers to cause a denial of service (CPU consumption) via a crafted PNG image with truncated data, which causes an infinite loop in the png_read_info function in libpng.

  • Published: May 18, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-2756
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:N/A:P

No CWE or OWASP classifications available.

Software From Fixed in
libgd / libgd 2.0.34 2.0.34.x