CVE-2010-4698

Public Date:
2010-12-08
Bugzilla:
670799: CVE-2010-4698 php: GD crash in imagepstext with invalid anti-aliasing argument

The MITRE CVE dictionary describes this issue as:

Stack-based buffer overflow in the GD extension in PHP before 5.2.15 and 5.3.x before 5.3.4 allows context-dependent attackers to cause a denial of service (application crash) via a large number of anti-aliasing steps in an argument to the imagepstext function.

Find out more about CVE-2010-4698 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Not vulnerable. This issue did not affect the versions of PHP as shipped with Red Hat Enterprise Linux 4, 5, or 6.

Affected Packages State

Platform Package State
Red Hat Enterprise Linux 6 php Not affected
Red Hat Enterprise Linux 5 php Not affected
Red Hat Enterprise Linux 5 php53 Not affected
Red Hat Enterprise Linux 4 php Not affected
Last Modified

CVE description copyright © 2017, The MITRE Corporation