CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
84.8%
Stack-based buffer overflow in the GD extension in PHP before 5.2.15 and 5.3.x before 5.3.4 allows context-dependent attackers to cause a denial of service (application crash) via a large number of anti-aliasing steps in an argument to the imagepstext function.
Vendor | Product | Version | CPE |
---|---|---|---|
php | php | 5.2.3 | cpe:/a:php:php:5.2.3::: |
php | php | 5.2.0 | cpe:/a:php:php:5.2.0::: |
php | php | 5.2.12 | cpe:/a:php:php:5.2.12::: |
php | php | 5.2.13 | cpe:/a:php:php:5.2.13::: |
php | php | 5.3.0 | cpe:/a:php:php:5.3.0::: |
php | php | 5.3.1 | cpe:/a:php:php:5.3.1::: |
php | php | 5.2.10 | cpe:/a:php:php:5.2.10::: |
php | php | 5.2.1 | cpe:/a:php:php:5.2.1::: |
php | php | 5.2.4 | cpe:/a:php:php:5.2.4::: |
php | php | 5.3.2 | cpe:/a:php:php:5.3.2::: |