[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2008:099 -- Mandriva ImageMagick

ID: oval:org.secpod.oval:def:301309Date: (C)2012-01-07   (M)2021-06-02
Class: PATCHFamily: unix




A heap-based buffer overflow vulnerability was found in how ImageMagick parsed XCF files. If ImageMagick opened a specially-crafted XCF file, it could be made to overwrite heap memory beyond the bounds of its allocated memory, potentially allowing an attacker to execute arbitrary code on the system running ImageMagick . Another heap-based buffer overflow vulnerability was found in how ImageMagick processed certain malformed PCX images. If ImageMagick opened a specially-crafted PCX image file, an attacker could possibly execute arbitrary code on the system running ImageMagick . The updated packages have been patched to correct these issues.

Platform:
Mandriva Linux 2007.1
Mandriva Linux 2008.0
Product:
ImageMagick
Reference:
MDVSA-2008:099
CVE-2008-1096
CVE-2008-1097
CVE    2
CVE-2008-1097
CVE-2008-1096
CPE    2
cpe:/o:mandriva:linux:2007.1
cpe:/o:mandriva:linux:2008.0

© SecPod Technologies