PT-2005-3815 · Netpbm+1 · Netpbm+1

Bastien Nocera

·

Publicado

2005-10-18

·

Atualizado

2018-10-03

·

CVE-2005-2978

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions netpbm versions prior to 10.25
Description The issue arises when using the -trans option in pnmtopng for converting Portable Anymap (PNM) images to Portable Network Graphics (PNG). It uses uninitialized size and index variables, which could potentially allow attackers to execute arbitrary code by modifying the stack.
Recommendations For versions prior to 10.25, update to version 10.25 or later to resolve the issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-2978
DSA-878-1
RHSA-2005:793
RHSA-2005_793

Produtos afetados

Red Hat
Netpbm