7.5
CVSSv2

CVE-2002-1277

Published: 12/11/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Window Maker (wmaker) 0.80.0 and previous versions may allow remote malicious users to execute arbitrary code via a certain image file that is not properly handled when Window Maker uses width and height information to allocate a buffer.

Vulnerable Product Search on Vulmon Subscribe to Product

windowmaker windowmaker 0.52.2

windowmaker windowmaker 0.53

windowmaker windowmaker 0.20.1.3

windowmaker windowmaker 0.62

windowmaker windowmaker 0.63

windowmaker windowmaker 0.64

windowmaker windowmaker 0.65

windowmaker windowmaker 0.80

windowmaker windowmaker 0.61

windowmaker windowmaker 0.61.1

windowmaker windowmaker 0.62.1

windowmaker windowmaker 0.63.1

Vendor Advisories

Al Viro found a problem in the image handling code use in Window Maker, a popular NEXTSTEP like window manager When creating an image it would allocate a buffer by multiplying the image width and height, but did not check for an overflow This makes it possible to overflow the buffer This could be exploited by using specially crafted image files ...