Heap-based buffer overflow in the readpgm function in pnm.c for GOCR 0.40, when it is not using netpbm, allows remote attackers to execute arbitrary code via a P3 format PNM file with more data than implied by its width and height values.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Optical_character_recognition_utility | Gocr | 0.3.2 (including) | 0.3.2 (including) |
Optical_character_recognition_utility | Gocr | 0.3.4 (including) | 0.3.4 (including) |
Optical_character_recognition_utility | Gocr | 0.37 (including) | 0.37 (including) |
Optical_character_recognition_utility | Gocr | 0.39 (including) | 0.39 (including) |
Optical_character_recognition_utility | Gocr | 0.40 (including) | 0.40 (including) |