Multiple integer overflows in SWFTools 0.9.1 allow remote attackers to execute arbitrary code via (1) a crafted PNG file, related to the getPNG function in lib/png.c; or (2) a crafted JPEG file, related to the jpeg_load function in lib/jpeg.c.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Swftools | Swftools | 0.9.1 (including) | 0.9.1 (including) |
Swftools | Ubuntu | hardy | * |
Swftools | Ubuntu | jaunty | * |
Swftools | Ubuntu | karmic | * |
Swftools | Ubuntu | lucid | * |