Lucene search

K
redhatcveRedhat.comRH:CVE-2016-9933
HistoryDec 14, 2016 - 2:17 p.m.

CVE-2016-9933

2016-12-1414:17:37
redhat.com
access.redhat.com
11

0.136 Low

EPSS

Percentile

95.6%

An infinite recursion flaw was found in the gdImageFillToBorder() function from the gd library; also used by PHP imagefilltoborder() function, when passing a negative integer as the color parameter, triggering a stack overflow. A remote attacker with ability to force a negative color identifier when calling the function could crash the PHP application, causing a Denial of Service.