Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-4274

Опубликовано: 09 фев. 2010
Источник: redhat
CVSS2: 6.8
EPSS Низкий

Описание

Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6netpbmAffected
Red Hat Enterprise Linux 4netpbmFixedRHSA-2011:181112.12.2011
Red Hat Enterprise Linux 5netpbmFixedRHSA-2011:181112.12.2011

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-121
https://bugzilla.redhat.com/show_bug.cgi?id=546580netpbm: Stack-based buffer overflow by processing X PixMap image header fields

EPSS

Процентиль: 85%
0.02543
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.

nvd
больше 15 лет назад

Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.

debian
больше 15 лет назад

Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm befo ...

github
больше 3 лет назад

Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.

fstec
почти 12 лет назад

Уязвимость операционной системы Gentoo Linux, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 85%
0.02543
Низкий

6.8 Medium

CVSS2