php-gd vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the php-gd package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2024-9026

<0:8.1.30-1.module+el9.5.0+90474+2605f5c9
  • M
CVE-2024-2756

<0:8.1.30-1.module+el9.5.0+90474+2605f5c9
  • M
Insufficient Verification of Data Authenticity

<0:8.1.30-1.module+el9.5.0+90474+2605f5c9
  • M
CVE-2024-3096

<0:8.1.30-1.module+el9.5.0+90474+2605f5c9
  • M
CVE-2024-8927

<0:8.1.30-1.module+el9.5.0+90474+2605f5c9
  • M
CVE-2024-8925

<0:8.1.30-1.module+el9.5.0+90474+2605f5c9
  • M
Use of Password Hash With Insufficient Computational Effort

<0:8.1.27-1.module+el9.3.0+90130+7e4e1ce0
  • H
XML External Entity (XXE) Injection

<0:8.0.30-1.el9_2
  • H
Out-of-Bounds

<0:8.0.30-1.el9_2
  • M
Resource Exhaustion

<0:8.1.27-1.module+el9.3.0+90130+7e4e1ce0
  • H
Use of Insufficiently Random Values

<0:8.0.30-1.el9_2
  • M
Allocation of Resources Without Limits or Throttling

<0:8.1.27-1.module+el9.3.0+90130+7e4e1ce0
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:8.1.14-1.module+el9.2.0+20960+2088691d
  • M
CVE-2022-31629

<0:8.1.14-1.module+el9.2.0+20960+2088691d
  • M
Out-of-bounds Read

<0:8.1.14-1.module+el9.2.0+20960+2088691d
  • M
CVE-2022-31631

<0:8.1.14-1.module+el9.2.0+20960+2088691d
  • M
Integer Overflow or Wraparound

<0:8.1.14-1.module+el9.2.0+20960+2088691d
  • M
Use After Free

<0:8.0.20-3.el9
  • M
Release of Invalid Pointer or Reference

<0:8.0.20-3.el9
  • H
Buffer Overflow

<0:8.0.13-2.el9_0