CVE Vulnerabilities

CVE-2005-3737

Published: Nov 22, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a SVG file with long CSS style property values.

Affected Software

Name Vendor Start Version End Version
Inkscape Inkscape 0.41 (including) 0.41 (including)
Inkscape Inkscape 0.42 (including) 0.42 (including)
Inkscape Inkscape 0.42.1 (including) 0.42.1 (including)
Inkscape Inkscape 0.42.2 (including) 0.42.2 (including)
Inkscape Ubuntu dapper *
Inkscape Ubuntu devel *
Inkscape Ubuntu edgy *
Inkscape Ubuntu feisty *

References