CVE-2004-1026
published 2005-01-10CVE-2004-1026: Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to…
PriorityP430critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
4.93%
91.2th percentile
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | imlib2 | < imlib2 1.1.2-2.1 (bookworm) | imlib2 1.1.2-2.1 (bookworm) |
| enlightenment | imlib | — | — |
| enlightenment | imlib | — | — |
| enlightenment | imlib2 | >= 0 < 1.1.2-2.1 | 1.1.2-2.1 |
| enlightenment | imlib2 | >= 0 < 1.1.2-2.1 | 1.1.2-2.1 |
| enlightenment | imlib2 | >= 0 < 1.1.2-2.1 | 1.1.2-2.1 |
| enlightenment | imlib2 | >= 0 < 1.1.2-2.1 | 1.1.2-2.1 |
| redhat | linux | — | — |
| redhat | linux | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_debian10.0CRITICAL
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
imlib2 vulnerabilities
vendor_ubuntu·2005-01-07
CVE-2004-1025 imlib2 vulnerabilities
Title: imlib2 vulnerabilities
Summary: imlib2 vulnerabilities
Recently, Pavel Kankovsky discovered several buffer overflows in imlib
which were fixed in USN-53-1. It was found that imlib2 was vulnerable
to similar issues.
If an attacker tricked a user into loading a malicious XPM or BMP
image, he could exploit this to execute arbitrary code in the context
of the user opening the image.
These vulnerabilities might also lead to privilege escalation if a
privileged server process is using this library; for example, a PHP
script on the web server which does automatic image processing might
use the php-imlib package, in which case a remote attacker could
possibly execute arbitrary code with the web server's privileges.
Instructions: In general, a standard system update will make all the ne
Ubuntu
imlib vulnerabilities
vendor_ubuntu·2004-12-29
CVE-2004-1025 imlib vulnerabilities
Title: imlib vulnerabilities
Summary: imlib vulnerabilities
Pavel Kankovsky discovered several buffer overflows in imlib. If an
attacker tricked a user into loading a malicious image, he could
exploit this to execute arbitrary code in the context of the user
opening the image.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
security flaw
vendor_redhat·2004-09-16·CVSS 10.0
CVE-2004-1026 [CRITICAL] security flaw
security flaw
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
Debian
CVE-2004-1026: imlib2 - Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, wh...
vendor_debian·2004·CVSS 10.0
CVE-2004-1026 [CRITICAL] CVE-2004-1026: imlib2 - Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, wh...
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
Scope: local
bookworm: resolved (fixed in 1.1.2-2.1)
bullseye: resolved (fixed in 1.1.2-2.1)
forky: resolved (fixed in 1.1.2-2.1)
sid: resolved (fixed in 1.1.2-2.1)
trixie: resolved (fixed in 1.1.2-2.1)
GHSA
GHSA-82jg-xfmw-x3pg: Multiple integer overflows in the image handler for imlib 1
ghsa_unreviewed·2022-04-29
CVE-2004-1026 [HIGH] GHSA-82jg-xfmw-x3pg: Multiple integer overflows in the image handler for imlib 1
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
OSV
CVE-2004-1026: Multiple integer overflows in the image handler for imlib 1
osv·2005-01-10·CVSS 10.0
CVE-2004-1026 [CRITICAL] CVE-2004-1026: Multiple integer overflows in the image handler for imlib 1
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
No detection rules found.
Bugzilla
CVE-2004-1026 security flaw
bugzilla·2018-08-16·CVSS 10.0
CVE-2004-1026 [CRITICAL] CVE-2004-1026 security flaw
CVE-2004-1026 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
Bugzilla
CVE-2004-1025, CVE-2004-1026: imlib integer/buffer overflows
bugzilla·2007-04-05·CVSS 10.0
CVE-2004-1025 [CRITICAL] CVE-2004-1025, CVE-2004-1026: imlib integer/buffer overflows
CVE-2004-1025, CVE-2004-1026: imlib integer/buffer overflows
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2004-1025
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2004-1026
These two old issues appear to be still present in FE6 (1.9.13-*) and devel
(1.9.15-*) imlib packages. Bug 138516 contains a test case XPM as well as a
patch which should fix these issues.
Discussion:
It is unfortunate that the security fixes that went into RHEL4 in November 2004
didn't make it into the Fedora Core package at that time.
I've verified that the test pixmap crashes the current imblib (using qiv) and
that the patch from Bug #138516 fixes it.
I've now incorporated that patch in that bug into the 1.9.15-2 package on devel,
and updated FC-6 from 1.9.13-* to 1.9.15-2, which I believe will resolve this
problem for FC-
Bugzilla
CAN-2004-1025 Multiple imlib issues. (CAN-2004-1026)
bugzilla·2004-11-09·CVSS 10.0
[CRITICAL] CAN-2004-1025 Multiple imlib issues. (CAN-2004-1026)
CAN-2004-1025 Multiple imlib issues. (CAN-2004-1026)
Pavel Kankovsky of the fedora legacy project has reported multiple
issues in imlib. This patch fixes a number of issue, the bulk of them
being integer overflows.
See bug 138516 for more information.
I believe this issue also affects FC2 as well.
Discussion:
Built a package for these
---
Updates released for RH
http://www.linuxcompatible.org/RHSA-2004651-01_Updated_imlib_packages_fix_security_vulnerabilities_s38502.html
No updates for FC3:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/i386/
FC4 includes fix.
As this is quite old, leaving to Jonathan decision if there will be any updates
or just mark WONTFIX for fc3.
---
I mean Matthias, who is the bug owner.
---
The test pixmap from Bug #138516 crashes qi
http://www.debian.org/security/2005/dsa-628http://www.gentoo.org/security/en/glsa/glsa-200412-03.xmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2005:007http://www.redhat.com/support/errata/RHSA-2004-651.htmlhttp://www.securityfocus.com/bid/11830https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10771http://www.debian.org/security/2005/dsa-628http://www.gentoo.org/security/en/glsa/glsa-200412-03.xmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2005:007http://www.redhat.com/support/errata/RHSA-2004-651.htmlhttp://www.securityfocus.com/bid/11830https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10771
2005-01-10
Published