Back to bug 1388787

Who When What Removed Added
Adam Mariš 2016-10-26 08:11:34 UTC Depends On 1388788
Adam Mariš 2016-10-26 08:11:45 UTC Depends On 1388790
Adam Mariš 2016-10-26 08:20:58 UTC Blocks 1388796
Norman Sardella 2016-10-27 11:59:06 UTC CC sardella
Doran Moppert 2016-11-04 05:56:31 UTC CC databases-maint, trepik
Summary CVE-2016-6911 gd: Missing check for OOB read in dynamicGetbuf() CVE-2016-6911 gd, php: Missing check for OOB read in dynamicGetbuf()
Doran Moppert 2016-11-30 04:40:42 UTC Whiteboard impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=new,rhel-6/gd=new,rhel-7/gd=new,openshift-enterprise-2/gd=new,fedora-all/gd=affected,rhel-5/php=new,rhel-5/php53=new,rhel-6/php=new,rhel-7/php=new,rhscl-2/php54-php=new,rhscl-2/php55-php=new,rhscl-2/rh-php56-php=new,rhscl-2.3/rh-php70-php=new,openshift-enterprise-2/php=new,fedora-all/php=affected impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=new,rhel-6/gd=new,rhel-7/gd=new,openshift-enterprise-2/gd=new,fedora-all/gd=affected,rhel-5/php=new,rhel-5/php53=new,rhel-6/php=new,rhel-7/php=new,rhscl-2/php54-php=new,rhscl-2/php55-php=new,rhscl-2/rh-php56-php=new,rhscl-2/rh-php70-php=new,openshift-enterprise-2/php=new,fedora-all/php=affected
Doran Moppert 2016-12-05 06:14:56 UTC Doc Text A vulnerability was found in gd. The function dynamicGetbuf() failed to check for out of bounds reads. An attacker could create a crafted image that would lead to a crash or, potentially, information disclosure.
Doran Moppert 2016-12-05 06:19:55 UTC Whiteboard impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=new,rhel-6/gd=new,rhel-7/gd=new,openshift-enterprise-2/gd=new,fedora-all/gd=affected,rhel-5/php=new,rhel-5/php53=new,rhel-6/php=new,rhel-7/php=new,rhscl-2/php54-php=new,rhscl-2/php55-php=new,rhscl-2/rh-php56-php=new,rhscl-2/rh-php70-php=new,openshift-enterprise-2/php=new,fedora-all/php=affected impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=wontfix,rhel-6/gd=wontfix,rhel-7/gd=wontfix,openshift-enterprise-2/gd=wontfix,fedora-all/gd=affected,rhel-5/php=wontfix,rhel-5/php53=wontfix,rhel-6/php=wontfix,rhel-7/php=wontfix,rhscl-2/php54-php=wontfix,rhscl-2/php55-php=wontfix,rhscl-2/rh-php56-php=new,rhscl-2/rh-php70-php=new,openshift-enterprise-2/php=wontfix,fedora-all/php=affected
Doran Moppert 2016-12-16 04:30:21 UTC Whiteboard impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=wontfix,rhel-6/gd=wontfix,rhel-7/gd=wontfix,openshift-enterprise-2/gd=wontfix,fedora-all/gd=affected,rhel-5/php=wontfix,rhel-5/php53=wontfix,rhel-6/php=wontfix,rhel-7/php=wontfix,rhscl-2/php54-php=wontfix,rhscl-2/php55-php=wontfix,rhscl-2/rh-php56-php=new,rhscl-2/rh-php70-php=new,openshift-enterprise-2/php=wontfix,fedora-all/php=affected impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=wontfix,rhel-6/gd=wontfix,rhel-7/gd=wontfix,openshift-enterprise-2/gd=wontfix,fedora-all/gd=affected,rhel-5/php=wontfix,rhel-5/php53=wontfix,rhel-6/php=wontfix,rhel-7/php=wontfix,rhscl-2/php54-php=wontfix,rhscl-2/php55-php=wontfix,rhscl-2/rh-php56-php=wontfix,rhscl-2/rh-php70-php=wontfix,openshift-enterprise-2/php=wontfix,fedora-all/php=affected
Doran Moppert 2016-12-16 04:30:55 UTC Status NEW CLOSED
Resolution --- WONTFIX
Last Closed 2016-12-15 23:30:55 UTC
Product Security DevOps Team 2019-09-29 13:58:49 UTC Whiteboard impact=moderate,public=20161015,reported=20161018,source=suse,cvss2=4.3/AV:N/AC:M/Au:N/C:N/I:N/A:P,cvss3=5.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L,cwe=CWE-391,rhel-5/gd=wontfix,rhel-6/gd=wontfix,rhel-7/gd=wontfix,openshift-enterprise-2/gd=wontfix,fedora-all/gd=affected,rhel-5/php=wontfix,rhel-5/php53=wontfix,rhel-6/php=wontfix,rhel-7/php=wontfix,rhscl-2/php54-php=wontfix,rhscl-2/php55-php=wontfix,rhscl-2/rh-php56-php=wontfix,rhscl-2/rh-php70-php=wontfix,openshift-enterprise-2/php=wontfix,fedora-all/php=affected

Back to bug 1388787