PT-2003-1105 · Netpbm · Netpbm
Al Viro
+1
·
Published
2003-03-18
·
Updated
2017-07-11
·
CVE-2003-0146
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
NetPBM versions 9.20 and earlier
Description
The issue involves multiple vulnerabilities that can be exploited remotely, potentially leading to disruption of confidentiality, integrity, and availability of protected information. These vulnerabilities may cause a denial of service or allow the execution of arbitrary code via maths overflow errors, including integer signedness errors or integer overflows that lead to buffer overflows.
Recommendations
For versions 9.20 and earlier, update to a version later than 9.20 to resolve the issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability for other affected versions.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netpbm