Executive Summary
Summary | |
---|---|
Title | libgd2 security update |
Informations | |||
---|---|---|---|
Name | DSA-3587 | First vendor Publication | 2016-05-27 |
Vendor | Debian | Last vendor Modification | 2016-05-27 |
Severity (Vendor) | N/A | Revision | 1 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:P) | |||
---|---|---|---|
Cvss Base Score | 6.8 | Attack Range | Network |
Cvss Impact Score | 6.4 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Several vulnerabilities were discovered in libgd2, a library for programmatic graphics creation and manipulation. A remote attacker can take advantage of these flaws to cause a denial-of-service against an application using the libgd2 library. For the stable distribution (jessie), these problems have been fixed in version 2.1.0-5+deb8u3. For the unstable distribution (sid), these problems have been fixed in version 2.2.1-1 or earlier. We recommend that you upgrade your libgd2 packages. |
Original Source
Url : http://www.debian.org/security/2016/dsa-3587 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
33 % | CWE-399 | Resource Management Errors |
33 % | CWE-125 | Out-of-bounds Read |
33 % | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
CPE : Common Platform Enumeration
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2016-08-29 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2016-1638-1.nasl - Type : ACT_GATHER_INFO |
2016-08-29 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2016-1633-1.nasl - Type : ACT_GATHER_INFO |
2016-08-02 | Name : The remote Amazon Linux AMI host is missing a security update. File : ala_ALAS-2016-728.nasl - Type : ACT_GATHER_INFO |
2016-07-21 | Name : The remote host is missing a Mac OS X update that fixes multiple vulnerabilit... File : macosx_SecUpd2016-004.nasl - Type : ACT_GATHER_INFO |
2016-07-21 | Name : The remote host is missing a Mac OS X security update that fixes multiple vul... File : macosx_10_11_6.nasl - Type : ACT_GATHER_INFO |
2016-07-19 | Name : The remote Fedora host is missing a security update. File : fedora_2016-d126bb1b74.nasl - Type : ACT_GATHER_INFO |
2016-07-15 | Name : The remote Fedora host is missing a security update. File : fedora_2016-a4d48d6fd6.nasl - Type : ACT_GATHER_INFO |
2016-07-14 | Name : The remote Fedora host is missing a security update. File : fedora_2016-de6e26b8aa.nasl - Type : ACT_GATHER_INFO |
2016-07-14 | Name : The remote Fedora host is missing a security update. File : fedora_2016-a82ad4c373.nasl - Type : ACT_GATHER_INFO |
2016-07-14 | Name : The remote Fedora host is missing a security update. File : fedora_2016-363d307082.nasl - Type : ACT_GATHER_INFO |
2016-07-12 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-3030-1.nasl - Type : ACT_GATHER_INFO |
2016-07-01 | Name : The version of PHP running on the remote web server is affected by multiple v... File : php_5_5_37.nasl - Type : ACT_GATHER_INFO |
2016-06-28 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2016-776.nasl - Type : ACT_GATHER_INFO |
2016-06-27 | Name : The remote FreeBSD host is missing one or more security-related updates. File : freebsd_pkg_66d77c583b1d11e68e82002590263bf5.nasl - Type : ACT_GATHER_INFO |
2016-06-17 | Name : The remote SUSE host is missing one or more security updates. File : suse_SU-2016-1581-1.nasl - Type : ACT_GATHER_INFO |
2016-06-15 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-3602.nasl - Type : ACT_GATHER_INFO |
2016-06-14 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2016-703.nasl - Type : ACT_GATHER_INFO |
2016-06-09 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2016-696.nasl - Type : ACT_GATHER_INFO |
2016-06-06 | Name : The remote Amazon Linux AMI host is missing a security update. File : ala_ALAS-2016-707.nasl - Type : ACT_GATHER_INFO |
2016-06-06 | Name : The remote Amazon Linux AMI host is missing a security update. File : ala_ALAS-2016-706.nasl - Type : ACT_GATHER_INFO |
2016-06-02 | Name : The version of PHP running on the remote web server is affected by multiple v... File : php_7_0_7.nasl - Type : ACT_GATHER_INFO |
2016-06-02 | Name : The version of PHP running on the remote web server is affected by multiple v... File : php_5_6_22.nasl - Type : ACT_GATHER_INFO |
2016-06-02 | Name : The version of PHP running on the remote web server is affected by multiple v... File : php_5_5_36.nasl - Type : ACT_GATHER_INFO |
2016-06-01 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-2987-1.nasl - Type : ACT_GATHER_INFO |
2016-05-31 | Name : The remote FreeBSD host is missing one or more security-related updates. File : freebsd_pkg_6b110175246d11e68dd3002590263bf5.nasl - Type : ACT_GATHER_INFO |
2016-05-31 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-3587.nasl - Type : ACT_GATHER_INFO |
2016-05-31 | Name : The remote Slackware host is missing a security update. File : Slackware_SSA_2016-148-03.nasl - Type : ACT_GATHER_INFO |
2016-05-20 | Name : The remote Debian host is missing a security update. File : debian_DLA-482.nasl - Type : ACT_GATHER_INFO |
Alert History
Date | Informations |
---|---|
2016-08-11 12:04:02 |
|
2016-06-01 13:28:02 |
|
2016-05-27 17:22:49 |
|