Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-3481

Опубликовано: 20 авг. 2012
Источник: redhat
CVSS2: 6.8
EPSS Низкий

Описание

Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted height and len properties in a GIF image file, which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=847303plug-in): Heap-based buffer overflow by loading certain GIF images

EPSS

Процентиль: 88%
0.03895
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted height and len properties in a GIF image file, which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.

nvd
почти 13 лет назад

Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted height and len properties in a GIF image file, which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.

debian
почти 13 лет назад

Integer overflow in the ReadImage function in plug-ins/common/file-gif ...

github
больше 3 лет назад

Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted height and len properties in a GIF image file, which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.

oracle-oval
почти 13 лет назад

ELSA-2012-1180: gimp security update (MODERATE)

EPSS

Процентиль: 88%
0.03895
Низкий

6.8 Medium

CVSS2