Potential infinite loop in gdImageCreateFromGifCtx!

Disclosed: 2019-11-12 09:18:47 By orange To ibb
High
Vulnerability Details
## Description ----- It is easy to trigger in web application if the web use GD as its image library. For example, It can be triggered if a website resize the user-uploaded GIF, and **ALL** PHP version are affected!   ## Original bug report ----- - https://bugs.php.net/bug.php?id=75571   ## Note ----- - CVE-2018-5711 assigned   Thanks :) ## Impact A malicious GIF can trigger an infinite loop and lead to exhausted the server resource!
Actions
View on HackerOne
Report Stats
  • Report ID: 305972
  • State: Closed
  • Substate: resolved
  • Upvotes: 8
Share this report