Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-4024

Опубликовано: 13 мая 2016
Источник: debian

Описание

Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write operation.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imlib2fixed1.4.8-1package

Примечания

  • Upstream fix: https://git.enlightenment.org/legacy/imlib2.git/commit/?id=7eba2e4c8ac0e20838947f10f29d0efe1add8227

  • https://www.openwall.com/lists/oss-security/2016/04/14/5

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 10 лет назад

Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write operation.

CVSS3: 9.8
nvd
больше 10 лет назад

Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write operation.

CVSS3: 9.8
github
больше 4 лет назад

Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write operation.

CVSS3: 9.8
fstec
больше 10 лет назад

Уязвимость графической библиотеки imlib2, вызванная целочисленным переполнением, позволяющая нарушителю выполнить произвольный код