PT-2006-1076 · Enlightenment · Imlib2
M. Joonas Pihlaja
·
Published
2006-11-07
·
Updated
2017-07-20
·
CVE-2006-4807
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
imlib2 versions prior to 1.3.0
imlib2 versions prior to 1.2.1
Description:
The issue allows remote attackers to cause a denial of service, potentially leading to disruption of confidentiality, integrity, and availability of protected information. This can be achieved through user-assisted exploitation, such as via a crafted TGA image that triggers an out-of-bounds memory read.
Recommendations:
For imlib2 versions prior to 1.2.1, update to version 1.2.1 or later to resolve the issue.
For imlib2 versions prior to 1.3.0, update to version 1.3.0 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Imlib2