CVE-2010-0991
Published: 22 April 2010
Multiple heap-based buffer overflows in imlib2 1.4.3 allow context-dependent attackers to execute arbitrary code via a crafted (1) ARGB, (2) XPM, or (3) BMP file, related to the IMAGE_DIMENSIONS_OK macro in lib/image.h.
Notes
Author | Note |
---|---|
mdeslaur | only affects 1.4.3 |
Priority
Status
Package | Release | Status |
---|---|---|
imlib2 Launchpad, Ubuntu, Debian |
dapper |
Ignored
(reached end-of-life)
|
hardy |
Not vulnerable
(1.4.0-1ubuntu1.2)
|
|
intrepid |
Not vulnerable
(1.4.0-1.1ubuntu1.1)
|
|
jaunty |
Not vulnerable
(1.4.2-4ubuntu1)
|
|
karmic |
Not vulnerable
(1.4.2-5)
|
|
lucid |
Not vulnerable
(1.4.2-5build1)
|
|
upstream |
Needs triage
|