Find a vulnerability
Search criteria
Related vulnerabilities
ALSA-2026:75680
Vulnerability from osv_almalinux – Published: 2026-10-05 00:00 – Updated: 2026-10-06 10:00 – Source websiteGD is an open source code library for the dynamic creation of images by programmers. GD creates PNG, JPEG, GIF, WebP, XPM, BMP images, among other formats.
Security Fix(es):
- libgd: buffer overflow when processing specially crafted GIF file (CVE-2026-9672)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
{
"affected": [
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "gd"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "2.2.5-8.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:8",
"name": "gd-devel"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "2.2.5-8.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"details": "GD is an open source code library for the dynamic creation of images by programmers. GD creates PNG, JPEG, GIF, WebP, XPM, BMP images, among other formats. \n\nSecurity Fix(es): \n\n * libgd: buffer overflow when processing specially crafted GIF file (CVE-2026-9672)\n\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n",
"id": "ALSA-2026:75680",
"modified": "2026-10-06T10:00:13Z",
"published": "2026-10-05T00:00:00Z",
"references": [
{
"type": "ADVISORY",
"url": "https://access.redhat.com/errata/RHSA-2026:75680"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2026-9672"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2533111"
},
{
"type": "ADVISORY",
"url": "https://errata.almalinux.org/8/ALSA-2026-75680.html"
}
],
"related": [
"CVE-2026-9672"
],
"summary": "Important: gd security update"
}
BELL-CVE-2026-9672 (CVE-2026-9672)
Vulnerability from osv_bellsoft – Published: 2026-08-01 06:05 – Updated: 2026-08-03 00:14 – Source website| URL | Type | |
|---|---|---|
{
"affected": [
{
"package": {
"ecosystem": "Alpaquita:25",
"name": "php83",
"purl": "pkg:apk/alpaquita/php83?arch=source\u0026distro=25"
},
"ranges": [
{
"events": [
{
"introduced": "8.3.21-r0"
},
{
"fixed": "8.3.33-r0"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "Alpaquita:stream",
"name": "php83",
"purl": "pkg:apk/alpaquita/php83?arch=source\u0026distro=stream"
},
"ranges": [
{
"events": [
{
"introduced": "8.3.4-r2"
},
{
"fixed": "8.3.33-r0"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"id": "BELL-CVE-2026-9672",
"modified": "2026-08-03T00:14:11.668199Z",
"published": "2026-08-01T06:05:21.146374Z",
"references": [
{
"type": "ADVISORY",
"url": "https://docs.bell-sw.com/security/cves/CVE-2026-9672"
}
],
"schema_version": "1.7.4",
"upstream": [
"CVE-2026-9672"
]
}
CERTFR-2026-AVI-0952
Vulnerability from certfr_avis - Published: 2026-07-31 - Updated: 2026-07-31
De multiples vulnérabilités ont été découvertes dans PHP. Certaines d'entre elles permettent à un attaquant de provoquer une injection SQL (SQLi), un déni de service et un problème de sécurité non spécifié par l'éditeur.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Title | Publication Time | Tags | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
||||||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "PHP versions 8.3.x ant\u00e9rieures \u00e0 8.3.33",
"product": {
"name": "PHP",
"vendor": {
"name": "PHP",
"scada": false
}
}
},
{
"description": "PHP versions 8.5.x ant\u00e9rieures \u00e0 8.5.9",
"product": {
"name": "PHP",
"vendor": {
"name": "PHP",
"scada": false
}
}
},
{
"description": "PHP versions 8.4.x ant\u00e9rieures \u00e0 8.4.24",
"product": {
"name": "PHP",
"vendor": {
"name": "PHP",
"scada": false
}
}
},
{
"description": "PHP versions 8.2.x ant\u00e9rieures \u00e0 8.2.33",
"product": {
"name": "PHP",
"vendor": {
"name": "PHP",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-7260",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-7260"
},
{
"name": "CVE-2026-17543",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-17543"
},
{
"name": "CVE-2026-17544",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-17544"
},
{
"name": "CVE-2026-9672",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-9672"
}
],
"initial_release_date": "2026-07-31T00:00:00",
"last_revision_date": "2026-07-31T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-0952",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-07-31T00:00:00.000000"
}
],
"risks": [
{
"description": "Injection SQL (SQLi)"
},
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
},
{
"description": "D\u00e9ni de service"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans PHP. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une injection SQL (SQLi), un d\u00e9ni de service et un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans PHP",
"vendor_advisories": [
{
"published_at": "2026-07-30",
"title": "Bulletin de s\u00e9curit\u00e9 PHP 8.5.9",
"url": "https://www.php.net/ChangeLog-8.php#8.5.9"
},
{
"published_at": "2026-07-30",
"title": "Bulletin de s\u00e9curit\u00e9 PHP 8.2.33",
"url": "https://www.php.net/ChangeLog-8.php#8.2.33"
},
{
"published_at": "2026-07-30",
"title": "Bulletin de s\u00e9curit\u00e9 PHP 8.3.33",
"url": "https://www.php.net/ChangeLog-8.php#8.3.33"
},
{
"published_at": "2026-07-30",
"title": "Bulletin de s\u00e9curit\u00e9 PHP 8.4.24",
"url": "https://www.php.net/ChangeLog-8.php#8.4.24"
}
]
}
OPENSUSE-SU-2026:11418-1
Vulnerability from csaf_opensuse - Published: 2026-08-01 00:00 - Updated: 2026-09-17 17:17OPENSUSE-SU-2026:11435-1
Vulnerability from csaf_opensuse - Published: 2026-08-02 00:00 - Updated: 2026-09-17 17:18OPENSUSE-SU-2026:21532-1
Vulnerability from csaf_opensuse - Published: 2026-08-05 08:53 - Updated: 2026-09-17 17:41OPENSUSE-SU-2026:21548-1
Vulnerability from csaf_opensuse - Published: 2026-08-10 13:20 - Updated: 2026-09-17 17:41RHSA-2026:75680
Vulnerability from csaf_opensuse - Published: 2026-10-05 00:00 - Updated: 2026-10-07 08:32RHSA-2026:67635
Vulnerability from csaf_redhat - Published: 2026-09-15 18:29 - Updated: 2026-10-05 10:49A flaw was found in libgd. Processing a specially crafted GIF file allows a remote attacker to trigger a buffer overflow, resulting in an application crash and a denial of service. Arbitrary code execution is possible in theory, but considered highly unlikely because standard image decompression and pixel manipulation generally destroy the exploit payload.
RLSA-2026:75680 (CVE-2026-9672)
Vulnerability from osv_rocky – Published: 2026-10-06 06:01 – Updated: 2026-10-08 06:16 – Source websiteGD is an open source code library for the dynamic creation of images by programmers. GD creates PNG, JPEG, GIF, WebP, XPM, BMP images, among other formats.
Security Fix(es):
- libgd: buffer overflow when processing specially crafted GIF file (CVE-2026-9672)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
| URL | Type | |
|---|---|---|
{
"affected": [
{
"package": {
"ecosystem": "Rocky Linux:8",
"name": "gd",
"purl": "pkg:rpm/rocky-linux/gd?distro=rocky-linux-8\u0026epoch=0"
},
"ranges": [
{
"database_specific": {
"yum_repository": "AppStream"
},
"events": [
{
"introduced": "0"
},
{
"fixed": "0:2.2.5-8.el8_10"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"credits": [
{
"name": "Rocky Enterprise Software Foundation"
},
{
"name": "Red Hat"
}
],
"database_specific": {
"license": "CC-BY-4.0",
"license_url": "https://creativecommons.org/licenses/by/4.0/",
"source_advisory": "RHSA-2026:75680"
},
"details": "GD is an open source code library for the dynamic creation of images by programmers. GD creates PNG, JPEG, GIF, WebP, XPM, BMP images, among other formats. \n\nSecurity Fix(es):\n\n* libgd: buffer overflow when processing specially crafted GIF file (CVE-2026-9672)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.",
"id": "RLSA-2026:75680",
"modified": "2026-10-08T06:16:56.020322Z",
"published": "2026-10-06T06:01:39.276103Z",
"references": [
{
"type": "ADVISORY",
"url": "https://errata.rockylinux.org/RLSA-2026:75680"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2533111"
},
{
"type": "ADVISORY",
"url": "https://access.redhat.com/errata/RHSA-2026:75680"
}
],
"schema_version": "1.7.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
"type": "CVSS_V3"
}
],
"summary": "Important: gd security update",
"upstream": [
"CVE-2026-9672"
]
}
SUSE-SU-2026:23121-1
Vulnerability from csaf_suse - Published: 2026-08-05 08:51 - Updated: 2026-09-17 16:11SUSE-SU-2026:23144-1
Vulnerability from csaf_suse - Published: 2026-08-05 08:51 - Updated: 2026-09-17 16:11SUSE-SU-2026:23213-1
Vulnerability from csaf_suse - Published: 2026-08-10 13:17 - Updated: 2026-09-17 16:17SUSE-SU-2026:23224-1
Vulnerability from csaf_suse - Published: 2026-08-10 13:17 - Updated: 2026-09-17 16:17SUSE-SU-2026:3514-1
Vulnerability from csaf_suse - Published: 2026-08-05 18:29 - Updated: 2026-09-17 16:39SUSE-SU-2026:3538-1
Vulnerability from csaf_suse - Published: 2026-08-10 11:04 - Updated: 2026-09-17 16:39UBUNTU-CVE-2026-9672 (CVE-2026-9672)
Vulnerability from osv_ubuntu – Published: 2026-07-31 00:00 – Updated: 2026-09-02 22:16 – Source website[Unknown description]
| URL | Type | |
|---|---|---|
{
"affected": [
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.1.0-3ubuntu0.11+esm2"
},
{
"binary_name": "libgd3",
"binary_version": "2.1.0-3ubuntu0.11+esm2"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:14.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.1.0-3ubuntu0.11+esm2?arch=source\u0026distro=esm-infra-legacy/trusty"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.1.0-2",
"2.1.0-3",
"2.1.0-3ubuntu0.1",
"2.1.0-3ubuntu0.2",
"2.1.0-3ubuntu0.3",
"2.1.0-3ubuntu0.5",
"2.1.0-3ubuntu0.6",
"2.1.0-3ubuntu0.7",
"2.1.0-3ubuntu0.8",
"2.1.0-3ubuntu0.10",
"2.1.0-3ubuntu0.11",
"2.1.0-3ubuntu0.11+esm1",
"2.1.0-3ubuntu0.11+esm2"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libapache2-mod-php5",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "libapache2-mod-php5filter",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "libphp5-embed",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php-pear",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-cgi",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-cli",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-common",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-curl",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-enchant",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-fpm",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-gd",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-gmp",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-intl",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-ldap",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-mysql",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-mysqlnd",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-odbc",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-pgsql",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-pspell",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-readline",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-recode",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-snmp",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-sqlite",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-sybase",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-tidy",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-xmlrpc",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
},
{
"binary_name": "php5-xsl",
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:14.04:LTS",
"name": "php5",
"purl": "pkg:deb/ubuntu/php5@5.5.9+dfsg-1ubuntu4.29+esm16?arch=source\u0026distro=esm-infra-legacy/trusty"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"5.5.3+dfsg-1ubuntu2",
"5.5.3+dfsg-1ubuntu3",
"5.5.6+dfsg-1ubuntu1",
"5.5.6+dfsg-1ubuntu2",
"5.5.8+dfsg-2ubuntu1",
"5.5.9+dfsg-1ubuntu1",
"5.5.9+dfsg-1ubuntu2",
"5.5.9+dfsg-1ubuntu3",
"5.5.9+dfsg-1ubuntu4",
"5.5.9+dfsg-1ubuntu4.1",
"5.5.9+dfsg-1ubuntu4.2",
"5.5.9+dfsg-1ubuntu4.3",
"5.5.9+dfsg-1ubuntu4.4",
"5.5.9+dfsg-1ubuntu4.5",
"5.5.9+dfsg-1ubuntu4.6",
"5.5.9+dfsg-1ubuntu4.7",
"5.5.9+dfsg-1ubuntu4.9",
"5.5.9+dfsg-1ubuntu4.11",
"5.5.9+dfsg-1ubuntu4.12",
"5.5.9+dfsg-1ubuntu4.13",
"5.5.9+dfsg-1ubuntu4.14",
"5.5.9+dfsg-1ubuntu4.16",
"5.5.9+dfsg-1ubuntu4.17",
"5.5.9+dfsg-1ubuntu4.19",
"5.5.9+dfsg-1ubuntu4.20",
"5.5.9+dfsg-1ubuntu4.21",
"5.5.9+dfsg-1ubuntu4.22",
"5.5.9+dfsg-1ubuntu4.23",
"5.5.9+dfsg-1ubuntu4.24",
"5.5.9+dfsg-1ubuntu4.25",
"5.5.9+dfsg-1ubuntu4.26",
"5.5.9+dfsg-1ubuntu4.27",
"5.5.9+dfsg-1ubuntu4.29",
"5.5.9+dfsg-1ubuntu4.29+esm1",
"5.5.9+dfsg-1ubuntu4.29+esm2",
"5.5.9+dfsg-1ubuntu4.29+esm3",
"5.5.9+dfsg-1ubuntu4.29+esm4",
"5.5.9+dfsg-1ubuntu4.29+esm5",
"5.5.9+dfsg-1ubuntu4.29+esm6",
"5.5.9+dfsg-1ubuntu4.29+esm8",
"5.5.9+dfsg-1ubuntu4.29+esm10",
"5.5.9+dfsg-1ubuntu4.29+esm11",
"5.5.9+dfsg-1ubuntu4.29+esm12",
"5.5.9+dfsg-1ubuntu4.29+esm13",
"5.5.9+dfsg-1ubuntu4.29+esm14",
"5.5.9+dfsg-1ubuntu4.29+esm15",
"5.5.9+dfsg-1ubuntu4.29+esm16"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.1.1-4ubuntu0.16.04.12+esm4"
},
{
"binary_name": "libgd3",
"binary_version": "2.1.1-4ubuntu0.16.04.12+esm4"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:16.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.1.1-4ubuntu0.16.04.12+esm4?arch=source\u0026distro=esm-infra/xenial"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.1.1-4build1",
"2.1.1-4build2",
"2.1.1-4ubuntu0.16.04.1",
"2.1.1-4ubuntu0.16.04.2",
"2.1.1-4ubuntu0.16.04.3",
"2.1.1-4ubuntu0.16.04.5",
"2.1.1-4ubuntu0.16.04.6",
"2.1.1-4ubuntu0.16.04.7",
"2.1.1-4ubuntu0.16.04.8",
"2.1.1-4ubuntu0.16.04.10",
"2.1.1-4ubuntu0.16.04.11",
"2.1.1-4ubuntu0.16.04.12",
"2.1.1-4ubuntu0.16.04.12+esm1",
"2.1.1-4ubuntu0.16.04.12+esm4"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.2.5-4ubuntu0.5+esm3"
},
{
"binary_name": "libgd3",
"binary_version": "2.2.5-4ubuntu0.5+esm3"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:18.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.2.5-4ubuntu0.5+esm3?arch=source\u0026distro=esm-infra/bionic"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.2.5-3",
"2.2.5-4",
"2.2.5-4ubuntu0.2",
"2.2.5-4ubuntu0.3",
"2.2.5-4ubuntu0.4",
"2.2.5-4ubuntu0.5",
"2.2.5-4ubuntu0.5+esm3"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libapache2-mod-php7.2",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "libphp7.2-embed",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-bcmath",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-bz2",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-cgi",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-cli",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-common",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-curl",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-dba",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-enchant",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-fpm",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-gd",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-gmp",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-imap",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-interbase",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-intl",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-json",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-ldap",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-mbstring",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-mysql",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-odbc",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-opcache",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-pgsql",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-phpdbg",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-pspell",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-readline",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-recode",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-snmp",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-soap",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-sqlite3",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-sybase",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-tidy",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-xml",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-xmlrpc",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-xsl",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
},
{
"binary_name": "php7.2-zip",
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm12"
}
]
},
"package": {
"ecosystem": "Ubuntu:Pro:18.04:LTS",
"name": "php7.2",
"purl": "pkg:deb/ubuntu/php7.2@7.2.24-0ubuntu0.18.04.17+esm12?arch=source\u0026distro=esm-infra/bionic"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"7.2.1-1ubuntu2",
"7.2.2-1ubuntu1",
"7.2.2-1ubuntu2",
"7.2.3-1ubuntu1",
"7.2.5-0ubuntu0.18.04.1",
"7.2.7-0ubuntu0.18.04.1",
"7.2.7-0ubuntu0.18.04.2",
"7.2.10-0ubuntu0.18.04.1",
"7.2.15-0ubuntu0.18.04.1",
"7.2.15-0ubuntu0.18.04.2",
"7.2.17-0ubuntu0.18.04.1",
"7.2.19-0ubuntu0.18.04.1",
"7.2.19-0ubuntu0.18.04.2",
"7.2.24-0ubuntu0.18.04.1",
"7.2.24-0ubuntu0.18.04.2",
"7.2.24-0ubuntu0.18.04.3",
"7.2.24-0ubuntu0.18.04.4",
"7.2.24-0ubuntu0.18.04.6",
"7.2.24-0ubuntu0.18.04.7",
"7.2.24-0ubuntu0.18.04.8",
"7.2.24-0ubuntu0.18.04.9",
"7.2.24-0ubuntu0.18.04.10",
"7.2.24-0ubuntu0.18.04.11",
"7.2.24-0ubuntu0.18.04.12",
"7.2.24-0ubuntu0.18.04.13",
"7.2.24-0ubuntu0.18.04.15",
"7.2.24-0ubuntu0.18.04.16",
"7.2.24-0ubuntu0.18.04.17",
"7.2.24-0ubuntu0.18.04.17+esm1",
"7.2.24-0ubuntu0.18.04.17+esm2",
"7.2.24-0ubuntu0.18.04.17+esm3",
"7.2.24-0ubuntu0.18.04.17+esm4",
"7.2.24-0ubuntu0.18.04.17+esm5",
"7.2.24-0ubuntu0.18.04.17+esm6",
"7.2.24-0ubuntu0.18.04.17+esm7",
"7.2.24-0ubuntu0.18.04.17+esm8",
"7.2.24-0ubuntu0.18.04.17+esm9",
"7.2.24-0ubuntu0.18.04.17+esm10",
"7.2.24-0ubuntu0.18.04.17+esm11",
"7.2.24-0ubuntu0.18.04.17+esm12"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.2.5-5.2ubuntu2.4"
},
{
"binary_name": "libgd3",
"binary_version": "2.2.5-5.2ubuntu2.4"
}
]
},
"package": {
"ecosystem": "Ubuntu:20.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.2.5-5.2ubuntu2.4?arch=source\u0026distro=focal"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.2.5-5.2",
"2.2.5-5.2ubuntu2",
"2.2.5-5.2ubuntu2.1",
"2.2.5-5.2ubuntu2.4"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.3.0-2ubuntu2.3"
},
{
"binary_name": "libgd3",
"binary_version": "2.3.0-2ubuntu2.3"
}
]
},
"package": {
"ecosystem": "Ubuntu:22.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.3.0-2ubuntu2.3?arch=source\u0026distro=jammy"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.3.0-2ubuntu1",
"2.3.0-2ubuntu2",
"2.3.0-2ubuntu2.3"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.3.3-9ubuntu5"
},
{
"binary_name": "libgd3",
"binary_version": "2.3.3-9ubuntu5"
}
]
},
"package": {
"ecosystem": "Ubuntu:24.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.3.3-9ubuntu5?arch=source\u0026distro=noble"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.3.3-9ubuntu1",
"2.3.3-9ubuntu3",
"2.3.3-9ubuntu4",
"2.3.3-9ubuntu5"
]
},
{
"ecosystem_specific": {
"binaries": [
{
"binary_name": "libgd-tools",
"binary_version": "2.3.3-13ubuntu2"
},
{
"binary_name": "libgd3",
"binary_version": "2.3.3-13ubuntu2"
}
]
},
"package": {
"ecosystem": "Ubuntu:26.04:LTS",
"name": "libgd2",
"purl": "pkg:deb/ubuntu/libgd2@2.3.3-13ubuntu2?arch=source\u0026distro=resolute"
},
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "ECOSYSTEM"
}
],
"versions": [
"2.3.3-13ubuntu1",
"2.3.3-13ubuntu2"
]
}
],
"aliases": [],
"details": "[Unknown description]",
"id": "UBUNTU-CVE-2026-9672",
"modified": "2026-09-02T22:16:10Z",
"published": "2026-07-31T00:00:00Z",
"references": [
{
"type": "REPORT",
"url": "https://ubuntu.com/security/CVE-2026-9672"
},
{
"type": "REPORT",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-9672"
}
],
"related": [],
"schema_version": "1.7.0",
"severity": [
{
"score": "medium",
"type": "Ubuntu"
}
],
"upstream": [
"CVE-2026-9672"
]
}