Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2016-8670

26
FAUCET Score

CVE-2016-8670 is a critical integer signedness error in the GD Graphics Library (libgd) affecting versions through 2.2.3, and subsequently impacting PHP versions before 5.6.28 and 7.x before 7.0.13. This vulnerability allows remote attackers to trigger a stack-based buffer overflow and cause a denial of service, or potentially achieve other unspecified impacts, through a crafted imagecreatefromstring call. With a CVSS score of 9.8 (CRITICAL), it presents a severe risk due to its network-based attack vector, low attack complexity, and high potential for impact on confidentiality, integrity, and availability. Despite its high severity, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage, suggesting it has not garnered widespread attention.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2.2.3CPE matchmatch criteria
cpe:2.3:a:libgd:libgd:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

9.8CRITICAL

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
4.79%
Probability of exploitation in next 30 days
EPSS Percentile
91.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
This CVE's current EPSS score of 0.0479 is in the 85th percentile among its peer group of 36,835 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (12)

github_advisoryvendor investigatingvia nvd_reference
View patch
redhatend of lifevia redhat_api
Product: Red Hat Software CollectionsFixed in: rh-php70-php
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: gd
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: php
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: php53
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: gd
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: php
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: gd
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: php
redhatend of lifevia redhat_api
Product: Red Hat OpenShift Enterprise 2Fixed in: gd
redhatend of lifevia redhat_api
Product: Red Hat OpenShift Enterprise 2Fixed in: php
redhatend of lifevia redhat_api
Product: Red Hat Software CollectionsFixed in: rh-php56-php

Vendor Advisories (1)

redhatCVE-2016-8670Moderate

php: Stack based buffer overflow in dynamicGetbuf

Oct 10, 2016

References

bugs.php.net / bug.php
Vendor Advisory
github.com / libgd/libgd/commit/53110871935244816bbb9d131da0bccff734bfe9
Vendor Advisory
support.f5.com / csp/article/K21336065
debian.org / security/2016/dsa-3693
openwall.com / lists/oss-security/2016/10/15/1
Third Party Advisory
php.net / ChangeLog-5.php
Release NotesVendor Advisory
php.net / ChangeLog-7.php
Release NotesVendor Advisory
securityfocus.com / bid/93594