LWN.net Logo

gimp: integer overflow

Package(s):gimp CVE #(s):CVE-2009-1570
Created:November 13, 2009 Updated:September 28, 2012
Description: From the Mandriva advisory: Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a BMP file with crafted width and height values that trigger a heap-based buffer overflow.
Alerts:
CentOS CESA-2011:0837 2011-06-01
CentOS CESA-2011:0838 2011-05-31
Red Hat RHSA-2011:0838-01 2011-05-31
Red Hat RHSA-2011:0837-01 2011-05-31
Mandriva MDVSA-2009:332-1 2010-04-28
SuSE SUSE-SR:2010:009 2010-04-14
Ubuntu USN-880-1 2010-01-07
Slackware SSA:2009-345-01 2009-12-14
Mandriva MDVSA-2009:296-1 2009-12-11
Mandriva MDVSA-2009:332 2009-12-11
Mandriva MDVSA-2009:296 2009-11-13
Gentoo 201209-23 2012-09-28

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds