Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-4564

Опубликовано: 11 нояб. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8

Описание

ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.

РелизСтатусПримечание
devel

released

4.0.2-4ubuntu2
esm-infra-legacy/trusty

not-affected

4.0.2-4ubuntu2
hardy

released

3.8.2-7ubuntu3.14
lucid

released

3.9.2-2ubuntu0.11
oneiric

released

3.9.5-1ubuntu1.4
precise

released

3.9.5-2ubuntu1.3
quantal

released

4.0.2-1ubuntu2.1
raring

released

4.0.2-4ubuntu2
saucy

released

4.0.2-4ubuntu2
trusty

released

4.0.2-4ubuntu2

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

hardy

DNE

lucid

DNE

oneiric

DNE

precise

DNE

quantal

ignored

end of life
raring

ignored

end of life
saucy

ignored

end of life
trusty

DNE

Показывать по

6.8 Medium

CVSS2

Связанные уязвимости

redhat
почти 13 лет назад

ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.

nvd
почти 13 лет назад

ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.

debian
почти 13 лет назад

ppm2tiff does not check the return value of the TIFFScanlineSize funct ...

github
больше 3 лет назад

ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.

oracle-oval
больше 12 лет назад

ELSA-2012-1590: libtiff security update (MODERATE)

6.8 Medium

CVSS2