PT-2004-2001 · Debian+4 · Debian+2

Infamous41Md

·

Publicado

2004-12-15

·

Atualizado

2017-07-11

·

CVE-2004-0994

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read prf file function in readprf.c. NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer. Therefore, they should be regarded as distinct.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-0994
DSA-614-1

Produtos afetados

Debian
Xzgv
Xzgv Image Viewer