Secunia Logo
 
CVE Reference: CVE-2005-2976
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-2976

Description:
Integer overflow in io-xpm.c in gdk-pixbuf 0.22.0 in GTK+ before 2.8.7 allows attackers to cause a denial of service (crash) or execute arbitrary code via an XPM file with large height, width, and colour values, a different vulnerability than CVE-2005-3186.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntu.com/usn/usn-216-1

SUSE
  http://www.novell.com/linux/security/advisories/2005_65_gtk2.html

ST
  1015216

SAID
  Secunia Advisory: SA17791
  Secunia Advisory: SA17770
  Secunia Advisory: SA17657
  Secunia Advisory: SA17615
  Secunia Advisory: SA17592
  Secunia Advisory: SA17538
  Secunia Advisory: SA17562
  Secunia Advisory: SA17594
  Secunia Advisory: SA17710
  Secunia Advisory: SA17522

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-810.html

MANDRIVA
  http://frontal2.mandriva.com/security/advisories?name=MDKSA-2005:214

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200511-14.xml

FEDORA
  http://www.securityfocus.com/archive/1/archive/1/428052/100/0/threaded

DEBIAN
  http://www.debian.org/security/2005/dsa-911
  http://www.debian.org/security/2005/dsa-913

CONFIRM
  http://support.avaya.com/elmodocs2/security/ASA-2005-229.pdf

BID
  15428


Return to the previous page.