Revision Date: | 2014-02-24 | Version: | 74 |
Title: | RHSA-2012:1181: gimp security update (Moderate) |
Description: | Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted height and len properties in a GIF image file, which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information. |
Family: | unix | Class: | patch |
Status: | ACCEPTED | Reference(s): | CESA-2012:1181 CVE-2009-3909 CVE-2011-2896 CVE-2012-3402 CVE-2012-3403 CVE-2012-3481 RHSA-2012:1181-00
|
Platform(s): | CentOS Linux 5 Red Hat Enterprise Linux 5
| Product(s): | gimp
|
Definition Synopsis |
Redhat 5 or Centos 5 release The operating system installed on the system is Red Hat Enterprise Linux 5
OR The operating system installed on the system is CentOS Linux 5.x
AND Packages section
gimp-libs is earlier than 2:2.2.13-2.0.7.el5_8.5
OR gimp-devel is earlier than 2:2.2.13-2.0.7.el5_8.5
OR gimp is earlier than 2:2.2.13-2.0.7.el5_8.5
|