Integer overflow in the wxImage::Create function in src/common/image.cpp in wxWidgets 2.8.10 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted JPEG file, which triggers a heap-based buffer overflow. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Wxwidgets | Wxwidgets | 2.8.10 (including) | 2.8.10 (including) |
Wxwidgets2.6 | Ubuntu | dapper | * |
Wxwidgets2.6 | Ubuntu | hardy | * |
Wxwidgets2.6 | Ubuntu | intrepid | * |
Wxwidgets2.6 | Ubuntu | jaunty | * |
Wxwidgets2.6 | Ubuntu | karmic | * |
Wxwidgets2.8 | Ubuntu | hardy | * |
Wxwidgets2.8 | Ubuntu | intrepid | * |
Wxwidgets2.8 | Ubuntu | jaunty | * |
Wxwidgets2.8 | Ubuntu | karmic | * |
Wxwidgets2.8 | Ubuntu | upstream | * |