LWN.net Logo

camlimages: integer overflows

Package(s):camlimages CVE #(s):CVE-2009-3296
Created:October 16, 2009 Updated:June 1, 2010
Description: From the Debian advisory: It was discovered that CamlImages, an open source image processing library, suffers from several integer overflows, which may lead to a potentially exploitable heap overflow and result in arbitrary code execution. This advisory addresses issues with the reading of TIFF files. It also expands the patch for CVE-2009-2660 to cover another potential overflow in the processing of JPEG images.
Alerts:
Gentoo 201006-02 2010-06-01
Fedora FEDORA-2009-10594 2009-10-21
Fedora FEDORA-2009-10568 2009-10-21
Debian DSA-1912-2 2009-10-23
Mandriva MDVSA-2009:286 2009-10-21
Debian DSA-1912-1 2009-10-16

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds