CVE-2021-38115: Medium severity Libgd Libgd vulnerability
Published Aug 4, 2021
·Updated
readheadertga in gdtga.c in the GD Graphics Library (aka LibGD) through 2.3.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file.
Affected Software
1 affected component
Libgd Libgd<=2.3.2
Remediation
Event History
Aug 4, 2021
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-38115.
2
What is the severity of CVE-2021-38115?
The severity of CVE-2021-38115 is medium with a CVSS score of 6.5.
3
How does CVE-2021-38115 affect Libgd?
CVE-2021-38115 affects Libgd version up to and including 2.3.2.
4
What is the impact of CVE-2021-38115?
CVE-2021-38115 allows remote attackers to cause a denial of service through an out-of-bounds read.
5
Is there a fix for CVE-2021-38115?
Yes, the fix for CVE-2021-38115 is available in the latest version of Libgd. It is recommended to upgrade to version 2.3.3 or higher.