PT-2004-3667 · Imlib · Imlib
Pavel Kankovsky
·
Publicado
1970-01-01
·
Atualizado
2017-10-11
·
CVE-2004-1026
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
imlib versions 1.9.13 and earlier
imlib versions 1.9.14 and earlier
Description
The issue involves multiple vulnerabilities in the imlib package, which can lead to disruption of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely, potentially allowing attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
Recommendations
For imlib versions 1.9.13 and earlier, update to a version later than 1.9.13 to resolve the issue.
For imlib versions 1.9.14 and earlier, update to a version later than 1.9.14 to resolve the issue.
As a temporary workaround, consider restricting the use of image files from untrusted sources to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Imlib