CVE-2013-7226

Integer overflow in the gdImageCrop function in ext/gd/gd.c in PHP 5.5.x before 5.5.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an imagecrop function call with a large x dimension value, leading to a heap-based buffer overflow.


We have discovered 1,071,915 live websites that are affected by CVE-2013-7226.

Test my site




Affected Software

Product  PHP
Category Programming Languages
Vulnerable Domains1,071,915 live websites (12.28% of PHP install base)
Vulnerable Versions
  • from 0 before 5.5.9
Vulnerable Versions Count171 versions ( 31.26% of all versions)



Details

  • Published - Feb 18, 2014
  • Updated - Aug 6, 2024

CVE-2013-7226 usage by Country

United States270,673 websites



Russia116,652 websites
Taiwan108,648 websites
Germany80,665 websites
Japan68,663 websites
France65,348 websites
Netherlands42,316 websites
China38,198 websites
Korea, South20,870 websites

CVE-2013-7226 usage by TLD

.com470,381 websites
.ru102,198 websites
.de62,019 websites
.net43,067 websites
.nl29,066 websites
.org26,481 websites
.fr22,165 websites
.jp18,877 websites
.info14,889 websites
.cz13,802 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2013-7226

Top websites that are affected by CVE-2013-7226. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*****.***********.com Canada***
**********.com United States***
************.***.ar Argentina*,***
******************.com United States*,***
***.org United States*,***
****.com United States*,***
********.com United States*,***
*******.org United States*,***
****.***********.de Germany*,***
*************.com GB*,***
See full domain list

FAQ

A total of 1,071,915 websites have been identified as vulnerable to CVE-2013-7226, discovered through global website indexing conducted by WebTechSurvey.
PHP is susceptible to CVE-2013-7226 vulnerability.
PHP versions before 5.5.9 are vulnerable to CVE-2013-7226.
Version 5.5.9 of PHP addresses the CVE-2013-7226 security vulnerability.