[CLSA-2021:1635439636] Fixed CVEs in gd: CVE-2021-40145, CVE-2017-6363
Type:
security
Severity:
Important
Release date:
2021-10-28
Description:
- CVE-2021-40145: check for memory allocation errors processing GD2 images - CVE-2017-6363: make sure transparent index is within bounds of the palette
Updated packages:
  • gd-devel-2.0.35-12.el6.cloudlinux.els.x86_64.rpm
    sha:9d1d1e0a2639c7e6256646a376ed73368dd2b9b3
  • gd-2.0.35-12.el6.cloudlinux.els.i686.rpm
    sha:ccd2191604c7e5e38eaee0fe77fce6f895387f6b
  • gd-devel-2.0.35-12.el6.cloudlinux.els.i686.rpm
    sha:808dcc8f464d5336e6138d487a63284ee389cedc
  • gd-2.0.35-12.el6.cloudlinux.els.x86_64.rpm
    sha:f28513fde6288689cde76a95227b1d1780780321
  • gd-progs-2.0.35-12.el6.cloudlinux.els.x86_64.rpm
    sha:ad235b9fbd63d91496b11654edb4de7fc2a79b8d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.