[37138] in bugtraq

home help back first fref pref prev next nref lref last post

Re: libgd integer overflow

daemon@ATHENA.MIT.EDU (Richard Dawe)
Fri Oct 29 15:21:49 2004

Message-ID: <41828B2F.5010400@phekda.gotadsl.co.uk>
Date: Fri, 29 Oct 2004 19:25:51 +0100
From: Richard Dawe <rich@phekda.gotadsl.co.uk>
MIME-Version: 1.0
To: infamous41md@hotpop.com
Cc: bugtraq <bugtraq@securityfocus.com>
In-Reply-To: <20041025204303.4341d907.infamous41md@hotpop.com>
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: 7bit

Hello.

infamous41md@hotpop.com wrote:
> +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
> 
> Subject:
> 
> GD Graphics Library integer overflow leading to heap overflow.
> 
> +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
[snip]
> Many programs use GD, such as ImageMagick, and more
> importantly it is also the image library used for PHP, and there is a Perl
> module as well.
[snip]

ImageMagick doesn't seem to use GD. ImageMagick-5.5.7.15-1.3 from Fedora 
Core 2 certainly isn't linked against libgd. I could not find any 
references to GD in the ImageMagick 6.1.2-2 sources or documentation.

Bye, Rich =]

-- 
Richard Dawe [ http://homepages.nildram.co.uk/~phekda/richdawe/ ]

"You can't evaluate a man by logic alone."
   -- McCoy, "I, Mudd", Star Trek

home help back first fref pref prev next nref lref last post