7.5
CVSSv2

CVE-2004-0817

Published: 31/12/2004 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple heap-based buffer overflows in the imlib BMP image handler allow remote malicious users to execute arbitrary code via a crafted BMP file.

Vulnerable Product Search on Vulmon Subscribe to Product

enlightenment imlib 1.9

enlightenment imlib 1.9.2

enlightenment imlib 1.9.3

enlightenment imlib2 1.0

enlightenment imlib2 1.0.1

imagemagick imagemagick 5.4.3

imagemagick imagemagick 5.4.4.5

imagemagick imagemagick 6.0.2

sun java desktop system 2.0

enlightenment imlib 1.9.1

enlightenment imlib 1.9.10

enlightenment imlib 1.9.4

enlightenment imlib 1.9.5

enlightenment imlib2 1.0.2

enlightenment imlib2 1.0.3

imagemagick imagemagick 5.4.7

imagemagick imagemagick 5.4.8

sun java desktop system 2003

conectiva linux 10.0

enlightenment imlib 1.9.11

enlightenment imlib 1.9.12

enlightenment imlib 1.9.6

enlightenment imlib 1.9.7

enlightenment imlib2 1.0.4

enlightenment imlib2 1.0.5

imagemagick imagemagick 5.4.8.2.1.1.0

imagemagick imagemagick 5.5.3.2.1.2.0

conectiva linux 9.0

enlightenment imlib 1.9.13

enlightenment imlib 1.9.14

enlightenment imlib 1.9.8

enlightenment imlib 1.9.9

enlightenment imlib2 1.1

enlightenment imlib2 1.1.1

imagemagick imagemagick 5.3.3

imagemagick imagemagick 5.5.6.0_2003-04-09

imagemagick imagemagick 5.5.7

mandrakesoft mandrake linux 9.2

redhat enterprise linux 2.1

redhat enterprise linux 3.0

redhat linux advanced workstation 2.1

suse suse linux 9.1

suse suse linux 9.2

mandrakesoft mandrake linux corporate server 2.1

suse suse linux 8.0

redhat enterprise linux desktop 3.0

redhat fedora core core_1.0

suse suse linux 8.1

suse suse linux 8.2

turbolinux turbolinux workstation 7.0

turbolinux turbolinux workstation 8.0

turbolinux turbolinux desktop 10.0

turbolinux turbolinux server 7.0

turbolinux turbolinux server 8.0

mandrakesoft mandrake linux 10.0

redhat fedora core core_2.0

redhat fedora core core_3.0

suse suse linux 9.0

ubuntu ubuntu linux 4.1

Vendor Advisories

Synopsis imlib security update Type/Severity Security Advisory: Important Topic An updated imlib package that fixes several heap overflows is now available Description Imlib is an image loading and rendering librarySeveral heap overflow flaws were found in the imlib BMP image handler A ...
Marcus Meissner discovered a heap overflow error in imlib, an imaging library for X and X11, that could be abused by an attacker to execute arbitrary code on the victim's machine The updated packages we have provided in DSA 548-1 did not seem to be sufficient, which should be fixed by this update For the old stable distribution (woody) this probl ...