CVE Vulnerabilities

CVE-2009-2294

Published: Jul 05, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Integer overflow in the Png_datainfo_callback function in Dillo 2.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PNG image with crafted (1) width or (2) height values.

Affected Software

NameVendorStart VersionEnd Version
DilloDillo*2.1 (including)
DilloDillo0.0.0 (including)0.0.0 (including)
DilloDillo0.0.1 (including)0.0.1 (including)
DilloDillo0.0.2 (including)0.0.2 (including)
DilloDillo0.0.3 (including)0.0.3 (including)
DilloDillo0.0.4 (including)0.0.4 (including)
DilloDillo0.0.5 (including)0.0.5 (including)
DilloDillo0.0.6 (including)0.0.6 (including)
DilloDillo0.0.42 (including)0.0.42 (including)
DilloDillo0.0.43 (including)0.0.43 (including)
DilloDillo0.1.0 (including)0.1.0 (including)
DilloDillo0.2 (including)0.2 (including)
DilloDillo0.2.1 (including)0.2.1 (including)
DilloDillo0.2.2 (including)0.2.2 (including)
DilloDillo0.2.3 (including)0.2.3 (including)
DilloDillo0.2.4 (including)0.2.4 (including)
DilloDillo0.3 (including)0.3 (including)
DilloDillo0.3.1 (including)0.3.1 (including)
DilloDillo0.3.2 (including)0.3.2 (including)
DilloDillo0.4 (including)0.4 (including)
DilloDillo0.5.0 (including)0.5.0 (including)
DilloDillo0.5.1 (including)0.5.1 (including)
DilloDillo0.6 (including)0.6 (including)
DilloDillo0.6.1 (including)0.6.1 (including)
DilloDillo0.6.2 (including)0.6.2 (including)
DilloDillo0.6.3 (including)0.6.3 (including)
DilloDillo0.6.4 (including)0.6.4 (including)
DilloDillo0.6.5 (including)0.6.5 (including)
DilloDillo0.6.6 (including)0.6.6 (including)
DilloDillo0.7 (including)0.7 (including)
DilloDillo0.7.1 (including)0.7.1 (including)
DilloDillo0.7.1.2 (including)0.7.1.2 (including)
DilloDillo0.7.2 (including)0.7.2 (including)
DilloDillo0.7.3 (including)0.7.3 (including)
DilloDillo0.8 (including)0.8 (including)
DilloDillo0.8.1 (including)0.8.1 (including)
DilloDillo0.8.2 (including)0.8.2 (including)
DilloDillo0.8.3 (including)0.8.3 (including)
DilloDillo0.8.4 (including)0.8.4 (including)
DilloDillo0.8.5-pre-dw-design1 (including)0.8.5-pre-dw-design1 (including)
DilloDillo0.8.5-pre-dw-design2 (including)0.8.5-pre-dw-design2 (including)
DilloDillo0.8.5-pre-dw-design3 (including)0.8.5-pre-dw-design3 (including)
DilloDillo0.8.6 (including)0.8.6 (including)
DilloUbuntudapper*
DilloUbuntuhardy*
DilloUbuntuintrepid*
DilloUbuntujaunty*

References