Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2006-2440
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-2440

Description:
Heap-based buffer overflow in the libMagick componet of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function.

CVE Status:
Candidate

References:

SGI

SAID
  Secunia Advisory: SA21719
  Secunia Advisory: SA24186
  Secunia Advisory: SA24284

REDHAT
  http://www.redhat.com/support/errata/RHSA-2007-0015.html

DEBIAN
  http://www.debian.org/security/2006/dsa-1168

CONFIRM
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=345595


Return to the previous page.