PT-2009-5608 · None · Camlimages

Publicado

2009-10-20

·

Atualizado

2009-10-21

·

CVE-2009-3296

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions CamlImages version 2.2
Description The issue is related to multiple integer overflows in the tiffread.c file, which can be triggered by TIFF images with large width and height values. This could potentially lead to heap-based buffer overflows, allowing remote attackers to execute arbitrary code.
Recommendations For CamlImages version 2.2, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2009-3296
DSA-1912-1
DSA-1912-2

Produtos afetados

Camlimages