AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-3996

MEDIUM · CVSS 6.8 EPSS 4.22%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-09-04 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-3996
Severity
MEDIUM
CVSS
6.8
EPSS
4.22%

Original NVD Description

Multiple integer overflows in libgd in PHP before 5.2.4 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large (1) srcW or (2) srcH value to the (a) gdImageCopyResized function, or a large (3) sy (height) or (4) sx (width) value to the (b) gdImageCreate or the (c) gdImageCreateTrueColor function.