Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large (1) width or (2) height value in a Portable Pixel Map (ppm) image, which triggers a heap-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gegl | Gegl | 0.2.0 (including) | 0.2.0 (including) |
Red Hat Enterprise Linux 6 | RedHat | gegl-0:0.1.2-4.el6_3 | * |
Gegl | Ubuntu | lucid | * |
Gegl | Ubuntu | oneiric | * |
Gegl | Ubuntu | precise | * |
Gegl | Ubuntu | quantal | * |
Gegl | Ubuntu | raring | * |
Gegl | Ubuntu | saucy | * |
Gegl | Ubuntu | upstream | * |
Gegl | Ubuntu | utopic | * |
Gegl | Ubuntu | vivid | * |
Gegl | Ubuntu | wily | * |