<?xml version="1.0"?>
<rss version="2.0">
  <channel>
    <title>PHPDeveloper.org</title>
    <link>http://www.phpdeveloper.org</link>
    <description>Up-to-the Minute PHP News, views and community</description>
    <language>en-us</language>
    <pubDate>Tue, 21 May 2013 15:19:32 -0500</pubDate>
    <ttl>30</ttl>
    <item>
      <title><![CDATA[Secunia.com: PHP "gdPngReadData()" Truncated PNG Data Denial of Service]]></title>
      <guid>http://www.phpdeveloper.org/news/7894</guid>
      <link>http://www.phpdeveloper.org/news/7894</link>
      <description><![CDATA[<p>
Secunia has posted <a href="http://secunia.com/advisories/25378/">this new advisory</a> today about an issue with the GD graphics library functionality in PHP that could be used to cause a Denial of Service via a truncated PNG image.
</p>
<blockquote>
The vulnerability is caused due to the incorrect use of libpng within the function "gdPngReadData()" in ext/gd/libgd/gd_png.c of the GD extension when processing truncated data. This can be exploited to cause an infinite loop by e.g. tricking an application to process a specially crafted file. (reported by Xavier Roche)
</blockquote>
<p>
<a href="http://secunia.com/advisories/25378/">This issue</a> has been confirmed in PHP versions 4.4.7 and 5.2.2 but may affect others. The issue has already been corrected, however, and can be fetched from the <a href="http://viewcvs.php.net/viewvc.cgi/gd/libgd/gd_png.c?r1=1.22&r2=1.23&pathrev=HEAD">PHP CVS system</a> to protect your system.
</p>]]></description>
      <pubDate>Tue, 22 May 2007 11:09:00 -0500</pubDate>
    </item>
  </channel>
</rss>
