Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-3293
HistorySep 22, 2009 - 12:00 a.m.

CVE-2009-3293

2009-09-2200:00:00
ubuntu.com
ubuntu.com
16

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.018

Percentile

88.1%

Unspecified vulnerability in the imagecolortransparent function in PHP
before 5.2.11 has unknown impact and attack vectors related to an incorrect
“sanity check for the color index.”

Bugs

Notes

Author Note
mdeslaur php not affected - uses system libgd2 libgd2 in hardy is fixed by patch 0002_cvs20070916.patch
OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchlibgd2< 2.0.33-2ubuntu5.4UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.018

Percentile

88.1%