Back to Database
Status published
Critical
CVE-2016-6912
Double free vulnerability in the gdImageWebPtr function in the GD...
Vulnerability Description
Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via large width and height values.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-6912
Credits & Attribution
No credits recorded in the NVD database.
References
More from libgd
View All →CVE-2021-40812
The GD Graphics Library (aka LibGD) through 2.3.2 has an...
Unknown
0
CVE-2021-40145
gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD)...
High
7.5
CVE-2021-38115
read_header_tga in gd_tga.c in the GD Graphics Library (aka LibGD)...
Medium
6.5
CVE-2019-6978
The GD Graphics Library (aka LibGD) 2.2.5 has a double...
Critical
9.8
CVE-2019-6977
gdImageColorMatch in gd_color_match.c in the GD Graphics Library (aka LibGD)...
High
8.8
Affected Vendor
libgd
View all reports →Affected Software
libgd
Vulnerable Versions:
0
Timeline
Official Publish:
January 26th, 2017
Last Modified:
August 6th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.