Integer overflow in the gdImageCrop function in ext/gd/gd.c in PHP 5.5.x before 5.5.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an imagecrop function call with a large x dimension value, leading to a heap-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.1 | 5.5.1 |
Php | Php | 5.5.5 | 5.5.5 |
Php | Php | 5.5.7 | 5.5.7 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.6 | 5.5.6 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.3 | 5.5.3 |
Php | Php | 5.5.8 | 5.5.8 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.4 | 5.5.4 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.0 | 5.5.0 |
Php | Php | 5.5.2 | 5.5.2 |
Php | Php | 5.5.0 | 5.5.0 |