CVE-2006-4806

8 documents8 sources
Severity
5.1MEDIUM
EPSS
10.2%
top 6.89%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 7
Latest updateMay 1

Description

Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) ARGB (loader_argb.c), (2) PNG (loader_png.c), (3) LBM (loader_lbm.c), (4) JPEG (loader_jpeg.c), or (5) TIFF (loader_tiff.c) images.

CVSS vector

AV:N/AC:H/C:P/I:P/A:PExploitability: 4.9 | Impact: 6.4

Affected Packages2 packages

Debianimlib2< 1.3.0.0debian1-3+3
NVDenlightenment/imlib212 versions+11

Patches

🔴Vulnerability Details

3
GHSA
GHSA-5hx6-59g5-f27r: Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via2022-05-01
CVEList
CVE-2006-4806: Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via2006-11-07
OSV
CVE-2006-4806: Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via2006-11-07

📋Vendor Advisories

3
Ubuntu
imlib2 vulnerabilities2006-11-03
Debian
CVE-2006-4806: imlib2 - Multiple integer overflows in imlib2 allow user-assisted remote attackers to cau...2006
Red Hat
CVE-2006-4806: Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via

💬Community

1
Bugzilla
CVE-2006-480[6-9] imlib2 multiple vulnerabilities2006-11-08