VYPR
Unrated severityNVD Advisory· Published Aug 31, 2006· Updated Jun 16, 2026

CVE-2006-4484

CVE-2006-4484

Description

Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in the GD extension in PHP before 5.1.5 allows remote attackers to have an unknown impact via a GIF file with input_code_size greater than MAX_LWZ_BITS, which triggers an overflow when initializing the table array.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • PHP/PHP5 versions
    cpe:2.3:a:php:php:5.1.0:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:php:php:5.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:php:php:5.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:php:php:5.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:php:php:5.1.4:*:*:*:*:*:*:*
    • (no CPE)range: <5.1.5

Patches

Vulnerability mechanics

References

50

News mentions

0

No linked articles in our index yet.