LWN.net Logo

kdegraphics: memory corruption

Package(s):kdegraphics CVE #(s):CVE-2010-2575
Created:August 27, 2010 Updated:October 6, 2010
Description: From the Ubuntu advisory:

Stefan Cornelius of Secunia Research discovered a boundary error during RLE decompression in the "TranscribePalmImageToJPEG()" function in generators/plucker/inplug/image.cpp of okular when processing images embedded in PDB files, which can be exploited to cause a heap-based buffer overflow.

Alerts:
Slackware SSA:2010-240-03 2010-08-30
Fedora FEDORA-2010-13661 2010-08-27
Fedora FEDORA-2010-13629 2010-08-27
Mandriva MDVSA-2010:162 2010-08-26
Ubuntu USN-979-1 2010-08-27
SUSE SUSE-SR:2010:018 2010-10-06
openSUSE openSUSE-SU-2010:0691-1 2010-10-04

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds