Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-1570

Опубликовано: 13 нояб. 2009
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a BMP file with crafted width and height values that trigger a heap-based buffer overflow.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gimp:gimp:2.6.7:*:*:*:*:*:*:*

EPSS

Процентиль: 86%
0.0308
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-190

Связанные уязвимости

ubuntu
больше 15 лет назад

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a BMP file with crafted width and height values that trigger a heap-based buffer overflow.

redhat
больше 15 лет назад

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a BMP file with crafted width and height values that trigger a heap-based buffer overflow.

debian
больше 15 лет назад

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-re ...

github
около 3 лет назад

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a BMP file with crafted width and height values that trigger a heap-based buffer overflow.

oracle-oval
около 14 лет назад

ELSA-2011-0838: gimp security update (MODERATE)

EPSS

Процентиль: 86%
0.0308
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-190