Back to bug 1380450

Who When What Removed Added
Adam Mariš 2016-09-29 16:04:05 UTC Depends On 1380452
Adam Mariš 2016-09-29 16:04:15 UTC Depends On 1380453
Adam Mariš 2016-09-29 16:05:25 UTC Blocks 1380454
Doran Moppert 2016-09-30 03:41:54 UTC Whiteboard impact=moderate,public=20160902,reported=20160928,source=oss-security,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=4.0/CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-190,rhel-5/php=new,rhel-5/php53=new,rhel-6/php=new,rhel-7/php=new,rhscl-2/php54-php=new,rhscl-2/php55-php=new,rhscl-2/rh-php56-php=new,rhscl-2.3/rh-php70-php=new,openshift-enterprise-2/php=new,fedora-all/php=affected,rhel-5/gd=new,rhel-6/gd=new,rhel-7/gd=new,openshift-enterprise-2/gd=new,fedora-all/gd=affected impact=moderate,public=20160902,reported=20160928,source=oss-security,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=4.0/CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-190,rhel-5/php=notaffected,rhel-5/php53=notaffected,rhel-6/php=notaffected,rhel-7/php=notaffected,rhscl-2/php54-php=notaffected,rhscl-2/php55-php=notaffected,rhscl-2/rh-php56-php=notaffected,rhscl-2.3/rh-php70-php=notaffected,openshift-enterprise-2/php=notaffected,fedora-all/php=affected,rhel-5/gd=notaffected,rhel-6/gd=notaffected,rhel-7/gd=notaffected,openshift-enterprise-2/gd=notaffected,fedora-all/gd=affected
Doran Moppert 2016-09-30 03:44:40 UTC CC dmoppert
Doran Moppert 2016-09-30 03:55:45 UTC Whiteboard impact=moderate,public=20160902,reported=20160928,source=oss-security,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=4.0/CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-190,rhel-5/php=notaffected,rhel-5/php53=notaffected,rhel-6/php=notaffected,rhel-7/php=notaffected,rhscl-2/php54-php=notaffected,rhscl-2/php55-php=notaffected,rhscl-2/rh-php56-php=notaffected,rhscl-2.3/rh-php70-php=notaffected,openshift-enterprise-2/php=notaffected,fedora-all/php=affected,rhel-5/gd=notaffected,rhel-6/gd=notaffected,rhel-7/gd=notaffected,openshift-enterprise-2/gd=notaffected,fedora-all/gd=affected impact=moderate,public=20160902,reported=20160928,source=oss-security,cvss2=6.0/AV:N/AC:M/Au:S/C:P/I:P/A:P,cvss3=7.1/CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H,cwe=CWE-190->CWE-122,rhel-5/php=notaffected,rhel-5/php53=notaffected,rhel-6/php=notaffected,rhel-7/php=notaffected,rhscl-2/php54-php=notaffected,rhscl-2/php55-php=notaffected,rhscl-2/rh-php56-php=notaffected,rhscl-2.3/rh-php70-php=notaffected,openshift-enterprise-2/php=notaffected,fedora-all/php=affected,rhel-5/gd=notaffected,rhel-6/gd=notaffected,rhel-7/gd=notaffected,openshift-enterprise-2/gd=notaffected,fedora-all/gd=affected
Doran Moppert 2016-09-30 04:05:12 UTC Doc Text An integer overflow flaw, leading to a heap-based buffer overflow, was found in gd. An specially crafted image, when converted to webp, could cause the application to crash or potentially execute arbitrary code.
Doran Moppert 2016-09-30 04:08:01 UTC Status NEW CLOSED
Resolution --- NOTABUG
Last Closed 2016-09-30 00:08:01 UTC
Eric Christensen 2016-09-30 14:27:02 UTC Doc Text An integer overflow flaw, leading to a heap-based buffer overflow, was found in gd. An specially crafted image, when converted to webp, could cause the application to crash or potentially execute arbitrary code. An integer overflow flaw, leading to a heap-based buffer overflow, was found in gd. A specially crafted image, when converted to webp, could cause the application to crash or potentially execute arbitrary code.
Salvatore Bonaccorso 2016-10-03 15:06:49 UTC CC carnil
Product Security DevOps Team 2019-09-29 13:57:05 UTC Whiteboard impact=moderate,public=20160902,reported=20160928,source=oss-security,cvss2=6.0/AV:N/AC:M/Au:S/C:P/I:P/A:P,cvss3=7.1/CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H,cwe=CWE-190->CWE-122,rhel-5/php=notaffected,rhel-5/php53=notaffected,rhel-6/php=notaffected,rhel-7/php=notaffected,rhscl-2/php54-php=notaffected,rhscl-2/php55-php=notaffected,rhscl-2/rh-php56-php=notaffected,rhscl-2.3/rh-php70-php=notaffected,openshift-enterprise-2/php=notaffected,fedora-all/php=affected,rhel-5/gd=notaffected,rhel-6/gd=notaffected,rhel-7/gd=notaffected,openshift-enterprise-2/gd=notaffected,fedora-all/gd=affected

Back to bug 1380450