Back to search
CVE-2009-4274
Published: Feb 12, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
RHSA-2011:1811
vendor-advisory
x_refsource_REDHAT
ADV-2010-0358
vdb-entry
x_refsource_VUPEN
38530
third-party-advisory
x_refsource_SECUNIA
[oss-security] 20100209 vulnerability in netpbm (CVE-2009-4274)
mailing-list
x_refsource_MLIST
ADV-2010-0780
vdb-entry
x_refsource_VUPEN
netpbm-xpm-bo(56207)
vdb-entry
x_refsource_XF
https://bugzilla.redhat.com/show_bug.cgi?id=546580
x_refsource_CONFIRM
SUSE-SR:2010:006
vendor-advisory
x_refsource_SUSE
DSA-2026
vendor-advisory
x_refsource_DEBIAN
38915
third-party-advisory
x_refsource_SECUNIA
38164
vdb-entry
x_refsource_BID
MDVSA-2010:039
vendor-advisory
x_refsource_MANDRIVA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now