CVE Vulnerabilities

CVE-2006-6297

Published: Dec 05, 2006 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
NEGLIGIBLE

Stack consumption vulnerability in the KFILE JPEG (kfile_jpeg) plugin in kdegraphics 3, as used by konqueror, digikam, and other KDE image browsers, allows remote attackers to cause a denial of service (stack consumption) via a crafted EXIF section in a JPEG file, which results in an infinite recursion.

Affected Software

Name Vendor Start Version End Version
Kdegraphics Kde 3.2 (including) 3.2 (including)
Kdegraphics Kde 3.4.3 (including) 3.4.3 (including)
Kdegraphics Ubuntu dapper *
Kdegraphics Ubuntu devel *
Kdegraphics Ubuntu edgy *
Kdegraphics Ubuntu feisty *
Kdegraphics Ubuntu upstream *

References