Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-4433

Опубликовано: 05 нояб. 2012
Источник: redhat
CVSS2: 6.8

Описание

Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large (1) width or (2) height value in a Portable Pixel Map (ppm) image, which triggers a heap-based buffer overflow.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7geglNot affected
Red Hat Enterprise Linux 6geglFixedRHSA-2012:145512.11.2012

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190->CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=856300gegl: Integer overflow, leading to heap-based buffer overflow by parsing PPM image headers

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large (1) width or (2) height value in a Portable Pixel Map (ppm) image, which triggers a heap-based buffer overflow.

nvd
почти 13 лет назад

Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large (1) width or (2) height value in a Portable Pixel Map (ppm) image, which triggers a heap-based buffer overflow.

debian
почти 13 лет назад

Multiple integer overflows in operations/external/ppm-load.c in GEGL ( ...

suse-cvrf
больше 8 лет назад

Security update for gegl

suse-cvrf
больше 8 лет назад

Security update for gegl

6.8 Medium

CVSS2