{"schema_version":"1.7.5","id":"CVE-2017-6362","published":"2017-09-07T13:29:00.700Z","modified":"2026-07-08T05:49:23.345458756Z","related":["SUSE-SU-2018:0135-1","openSUSE-SU-2024:10777-1"],"details":"Double free vulnerability in the gdImagePngPtr function in libgd2 before 2.2.5 allows remote attackers to cause a denial of service via vectors related to a palette with no colors.","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/libgd/libgd","events":[{"introduced":"de09874b15a4c88772db35ced842330f5de23e76"},{"last_affected":"de09874b15a4c88772db35ced842330f5de23e76"},{"fixed":"8255231b68889597d04d451a72438ab92a405aba"}],"database_specific":{"cpe":"cpe:2.3:a:libgd:libgd:2.2.4:*:*:*:*:*:*:*","extracted_events":[{"introduced":"2.2.4"},{"last_affected":"2.2.4"}],"source":["CPE_STRING","REFERENCES"]}}],"versions":["2.2.4","gd-2.2.4"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-6362.json"}}],"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N2BLXX7KNRE7ZVQAKGTHHWS33CUCXVUP/"},{"type":"ADVISORY","url":"http://www.debian.org/security/2017/dsa-3961"},{"type":"REPORT","url":"https://github.com/libgd/libgd/issues/381"},{"type":"FIX","url":"https://github.com/libgd/libgd/releases/tag/gd-2.2.5"}],"database_specific":{"unresolved_ranges":[{"cpes":["cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"],"extracted_events":[{"introduced":"16.04"},{"last_affected":"16.04"}],"source":"CPE_STRING","vendor_product":"canonical:ubuntu_linux"},{"cpes":["cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*","cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"8.0"},{"last_affected":"8.0"},{"introduced":"9.0"},{"last_affected":"9.0"}],"source":"CPE_STRING","vendor_product":"debian:debian_linux"},{"cpes":["cpe:2.3:o:fedoraproject:fedora:26:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"26"},{"last_affected":"26"}],"source":"CPE_STRING","vendor_product":"fedoraproject:fedora"}]},"severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}