Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a SVG file with long CSS style property values.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Inkscape | Inkscape | 0.41 (including) | 0.41 (including) |
Inkscape | Inkscape | 0.42 (including) | 0.42 (including) |
Inkscape | Inkscape | 0.42.1 (including) | 0.42.1 (including) |
Inkscape | Inkscape | 0.42.2 (including) | 0.42.2 (including) |
Inkscape | Ubuntu | dapper | * |
Inkscape | Ubuntu | devel | * |
Inkscape | Ubuntu | edgy | * |
Inkscape | Ubuntu | feisty | * |