Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11440
HistoryJan 15, 2019 - 9:02 a.m.

Denial Of Service (DoS)

2019-01-1509:02:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.01 Low

EPSS

Percentile

83.5%

php is vulnerable to denial of service (DoS) attacks. The vulnerability exists as the gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.

References