VULNERABILITY INTELLIGENCE
CVE-2016-6912
CVSS score9.8 CRITICAL
EPSS probability4.49%
CISA KEVNot currently listed
Published2017-01-26
Last modified2026-06-17
CVSS vectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via large width and height values.
Weakness classification
- CWE-415: Double Free
Primary references
- cve@mitre.org
- cve@mitre.org
- cve@mitre.org — Patch, Release Notes
- cve@mitre.org — Patch, Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108
- af854a3a-2127-422b-91ae-364da2661108
- af854a3a-2127-422b-91ae-364da2661108 — Patch, Release Notes
- af854a3a-2127-422b-91ae-364da2661108 — Patch, Vendor Advisory