Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-3662

Опубликовано: 18 нояб. 2005
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

Off-by-one buffer overflow in pnmtopng before 2.39, when using the -alpha command line option (Alphas_Of_Color), allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNM file with exactly 256 colors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:greg_roelofs:pnmtopng:2.37.3:*:*:*:*:*:*:*
cpe:2.3:a:greg_roelofs:pnmtopng:2.37.4:*:*:*:*:*:*:*
cpe:2.3:a:greg_roelofs:pnmtopng:2.37.5:*:*:*:*:*:*:*
cpe:2.3:a:greg_roelofs:pnmtopng:2.37.6:*:*:*:*:*:*:*
cpe:2.3:a:greg_roelofs:pnmtopng:2.38:*:*:*:*:*:*:*

EPSS

Процентиль: 45%
0.006
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 20 лет назад

Off-by-one buffer overflow in pnmtopng before 2.39, when using the -alpha command line option (Alphas_Of_Color), allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNM file with exactly 256 colors.

redhat
больше 20 лет назад

Off-by-one buffer overflow in pnmtopng before 2.39, when using the -alpha command line option (Alphas_Of_Color), allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNM file with exactly 256 colors.

debian
больше 20 лет назад

Off-by-one buffer overflow in pnmtopng before 2.39, when using the -al ...

github
около 4 лет назад

Off-by-one buffer overflow in pnmtopng before 2.39, when using the -alpha command line option (Alphas_Of_Color), allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNM file with exactly 256 colors.

EPSS

Процентиль: 45%
0.006
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-119