LWN.net Logo

DevIL: off by one error

Package(s):DevIL CVE #(s):CVE-2008-5262
Created:January 22, 2009 Updated:March 9, 2009
Description: DevIL, the Developer's Image Library has an off by one error. From the Red Hat Bug entry: Multiple stack-based buffer overflows in the iGetHdrHeader function in src-IL/src/il_hdr.c in DevIL 1.7.4 allow context-dependent attackers to execute arbitrary code via a crafted Radiance RGBE file.
Alerts:
Gentoo 200903-04 2009-03-06
Debian DSA-1717 2009-02-05
Fedora FEDORA-2009-0867 2009-01-21
Fedora FEDORA-2009-0856 2009-01-21

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds