CVE-2008-0553

Publication date 7 February 2008

Last updated 24 July 2024


Ubuntu priority

Stack-based buffer overflow in the ReadImage function in tkImgGIF.c in Tk (Tcl/Tk) before 8.5.1 allows remote attackers to execute arbitrary code via a crafted GIF image, a similar issue to CVE-2006-4484.

Status

Package Ubuntu Release Status
tk8.0 8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper
Fixed 8.0.5-11ubuntu0.1
tk8.3 8.10 intrepid
Fixed 8.3.5-12
8.04 LTS hardy
Fixed 8.3.5-12
7.10 gutsy
Fixed 8.3.5-6ubuntu3.1
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper
Fixed 8.3.5-4ubuntu1.2
tk8.4 8.10 intrepid
Not affected
8.04 LTS hardy
Fixed 8.4.16-2ubuntu1.1
7.10 gutsy
Fixed 8.4.15-1ubuntu1.1
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper
Fixed 8.4.12-0ubuntu1.2
tk8.5 8.10 intrepid
Fixed 8.5.0-3
8.04 LTS hardy
Fixed 8.5.0-3
7.10 gutsy Not in release
7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper Not in release

References

Related Ubuntu Security Notices (USN)

Other references