6.8
CVSSv2

CVE-2008-0554

Published: 08/02/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the readImageData function in giftopnm.c in netpbm prior to 10.27 in netpbm prior to 10.27 allows remote user-assisted malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GIF image, a similar issue to CVE-2006-4484.

Vulnerable Product Search on Vulmon Subscribe to Product

netpbm netpbm

Vendor Advisories

It was discovered that Netpbm could be made to overrun a buffer when loading certain images If a user were tricked into opening a specially crafted GIF image, remote attackers could cause a denial of service or execute arbitrary code with user privileges ...
Debian Bug report logs - #464056 CVE-2006-4484: buffer overflow in giftopnm Package: netpbm; Maintainer for netpbm is Andreas Barth <aba@notsoarghorg>; Source for netpbm is src:netpbm-free (PTS, buildd, popcon) Reported by: Stefan Fritsch <sf@sfritschde> Date: Mon, 4 Feb 2008 22:15:01 UTC Severity: important Ta ...
A vulnerability was discovered in the GIF reader implementation in netpbm-free, a suite of image manipulation utilities Insufficient input data validation could allow a maliciously-crafted GIF file to overrun a stack buffer, potentially permitting the execution of arbitrary code For the stable distribution (etch), these problems have been fixed i ...