← Back

CVE-2016-5116

nvd nist
Published: Aug 7, 2016Modified: May 6, 2026

JSON object

Loading...
9.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Exploitability: 3.9 / Impact: 5.2
Source: NVD

Description

gd_xbm.c in the GD Graphics Library (aka libgd) before 2.2.0, as used in certain custom PHP 5.5.x configurations, allows context-dependent attackers to obtain sensitive information from process memory or cause a denial of service (stack-based buffer under-read and application crash) via a long name.

Affected (3)

1 product
Libgd
1 product
Leap
1 product
Debian Linux
Configuration A
1 vulnerable · 46 platform
Vulnerable SoftwareAffected Versions
Up to 2.2.1
Running on/withPlatform Versions
Php
Php
Version 5.5.0
Php
Php
Version 5.5.0 alpha1
Php
Php
Version 5.5.0 alpha2
Php
Php
Version 5.5.0 alpha3
Php
Php
Version 5.5.0 alpha4
Php
Php
Version 5.5.0 alpha5
Php
Php
Version 5.5.0 alpha6
Php
Php
Version 5.5.0 beta1
Php
Php
Version 5.5.0 beta2
Php
Php
Version 5.5.0 beta3
Php
Php
Version 5.5.0 beta4
Php
Php
Version 5.5.0 rc1
Php
Php
Version 5.5.0 rc2
Php
Php
Version 5.5.10
Php
Php
Version 5.5.11
Php
Php
Version 5.5.12
Php
Php
Version 5.5.13
Php
Php
Version 5.5.14
Php
Php
Version 5.5.18
Php
Php
Version 5.5.19
Php
Php
Version 5.5.1
Php
Php
Version 5.5.20
Php
Php
Version 5.5.21
Php
Php
Version 5.5.22
Php
Php
Version 5.5.23
Php
Php
Version 5.5.24
Php
Php
Version 5.5.25
Php
Php
Version 5.5.26
Php
Php
Version 5.5.27
Php
Php
Version 5.5.28
Php
Php
Version 5.5.29
Php
Php
Version 5.5.2
Php
Php
Version 5.5.30
Php
Php
Version 5.5.31
Php
Php
Version 5.5.32
Php
Php
Version 5.5.33
Php
Php
Version 5.5.34
Php
Php
Version 5.5.35
Php
Php
Version 5.5.37
Php
Php
Version 5.5.3
Php
Php
Version 5.5.4
Php
Php
Version 5.5.5
Php
Php
Version 5.5.6
Php
Php
Version 5.5.7
Php
Php
Version 5.5.8
Php
Php
Version 5.5.9
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 42.1
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0

References (12)

Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Issue TrackingPatchThird Party Advisory
Source: cve@mitre.org
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory

Timeline

No history available yet.