CVE Vulnerabilities

CVE-2005-2978

Published: Oct 18, 2005 | Modified: Oct 03, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

pnmtopng in netpbm before 10.25, when using the -trans option, uses uninitialized size and index variables when converting Portable Anymap (PNM) images to Portable Network Graphics (PNG), which might allow attackers to execute arbitrary code by modifying the stack.

Affected Software

Name Vendor Start Version End Version
Netpbm Netpbm 10.0 (including) 10.0 (including)
Netpbm Netpbm 10.1 (including) 10.1 (including)
Netpbm Netpbm 10.2 (including) 10.2 (including)
Netpbm Netpbm 10.3 (including) 10.3 (including)
Netpbm Netpbm 10.4 (including) 10.4 (including)
Netpbm Netpbm 10.5 (including) 10.5 (including)
Netpbm Netpbm 10.6 (including) 10.6 (including)
Netpbm Netpbm 10.7 (including) 10.7 (including)
Netpbm Netpbm 10.8 (including) 10.8 (including)
Netpbm Netpbm 10.9 (including) 10.9 (including)
Netpbm Netpbm 10.10 (including) 10.10 (including)
Netpbm Netpbm 10.11 (including) 10.11 (including)
Netpbm Netpbm 10.12 (including) 10.12 (including)
Netpbm Netpbm 10.13 (including) 10.13 (including)
Netpbm Netpbm 10.14 (including) 10.14 (including)
Netpbm Netpbm 10.15 (including) 10.15 (including)
Netpbm Netpbm 10.16 (including) 10.16 (including)
Netpbm Netpbm 10.17 (including) 10.17 (including)
Netpbm Netpbm 10.18 (including) 10.18 (including)
Netpbm Netpbm 10.19 (including) 10.19 (including)
Netpbm Netpbm 10.20 (including) 10.20 (including)
Netpbm Netpbm 10.21 (including) 10.21 (including)
Netpbm Netpbm 10.22 (including) 10.22 (including)
Netpbm Netpbm 10.23 (including) 10.23 (including)
Netpbm Netpbm 10.24 (including) 10.24 (including)
Red Hat Enterprise Linux 4 RedHat netpbm-0:10.25-2.EL4.2 *
Netpbm-free Ubuntu dapper *
Netpbm-free Ubuntu devel *
Netpbm-free Ubuntu edgy *
Netpbm-free Ubuntu feisty *
Netpbm-free Ubuntu upstream *

References