PT-2006-1076 · Enlightenment · Imlib2

M. Joonas Pihlaja

·

Published

2006-11-07

·

Updated

2017-07-20

·

CVE-2006-4807

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: imlib2 versions prior to 1.3.0 imlib2 versions prior to 1.2.1
Description: The issue allows remote attackers to cause a denial of service, potentially leading to disruption of confidentiality, integrity, and availability of protected information. This can be achieved through user-assisted exploitation, such as via a crafted TGA image that triggers an out-of-bounds memory read.
Recommendations: For imlib2 versions prior to 1.2.1, update to version 1.2.1 or later to resolve the issue. For imlib2 versions prior to 1.3.0, update to version 1.3.0 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-09534
CVE-2006-4807

Affected Products

Imlib2