CVE-2018-5711
Published: 16 January 2018
gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1, has an integer signedness error that leads to an infinite loop via a crafted GIF file, as demonstrated by a call to the imagecreatefromgif or imagecreatefromstring PHP function. This is related to GetCode_ and gdImageCreateFromGifCtx.
Priority
CVSS 3 base score: 5.5
Status
Package | Release | Status |
---|---|---|
libgd2 Launchpad, Ubuntu, Debian |
artful |
Ignored
(reached end-of-life)
|
bionic |
Released
(2.2.5-4ubuntu0.2)
|
|
cosmic |
Released
(2.2.5-4ubuntu1)
|
|
disco |
Released
(2.2.5-4ubuntu1)
|
|
eoan |
Released
(2.2.5-4ubuntu1)
|
|
focal |
Released
(2.2.5-4ubuntu1)
|
|
groovy |
Released
(2.2.5-4ubuntu1)
|
|
hirsute |
Released
(2.2.5-4ubuntu1)
|
|
precise |
Ignored
(end of ESM support, was needed)
|
|
trusty |
Released
(2.1.0-3ubuntu0.10)
|
|
upstream |
Needs triage
|
|
xenial |
Released
(2.1.1-4ubuntu0.16.04.10)
|
|
php5 Launchpad, Ubuntu, Debian |
artful |
Does not exist
|
bionic |
Does not exist
|
|
cosmic |
Does not exist
|
|
disco |
Does not exist
|
|
eoan |
Does not exist
|
|
focal |
Does not exist
|
|
groovy |
Does not exist
|
|
hirsute |
Does not exist
|
|
precise |
Not vulnerable
(uses system gd)
|
|
trusty |
Not vulnerable
(uses system gd)
|
|
upstream |
Needs triage
|
|
xenial |
Does not exist
|
|
php7.0 Launchpad, Ubuntu, Debian |
artful |
Does not exist
|
bionic |
Does not exist
|
|
cosmic |
Does not exist
|
|
disco |
Does not exist
|
|
eoan |
Does not exist
|
|
focal |
Does not exist
|
|
groovy |
Does not exist
|
|
hirsute |
Does not exist
|
|
precise |
Does not exist
|
|
trusty |
Does not exist
|
|
upstream |
Needs triage
|
|
xenial |
Not vulnerable
(uses system gd)
|
|
php7.1 Launchpad, Ubuntu, Debian |
artful |
Not vulnerable
(uses system gd)
|
bionic |
Does not exist
|
|
cosmic |
Does not exist
|
|
disco |
Does not exist
|
|
eoan |
Does not exist
|
|
focal |
Does not exist
|
|
groovy |
Does not exist
|
|
hirsute |
Does not exist
|
|
precise |
Does not exist
|
|
trusty |
Does not exist
|
|
upstream |
Needs triage
|
|
xenial |
Does not exist
|
Notes
Author | Note |
---|---|
mdeslaur | php uses the system libgd2 |
References
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-5711
- http://php.net/ChangeLog-5.php
- http://php.net/ChangeLog-7.php
- https://ubuntu.com/security/notices/USN-3755-1
- NVD
- Launchpad
- Debian