cbcvebase.
CVE-2006-4806
published 2006-11-07

CVE-2006-4806: Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a…

PriorityP427medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
4.21%
89.8th percentile
Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) ARGB (loader_argb.c), (2) PNG (loader_png.c), (3) LBM (loader_lbm.c), (4) JPEG (loader_jpeg.c), or (5) TIFF (loader_tiff.c) images.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianimlib2< imlib2 1.3.0.0debian1-3 (bookworm)imlib2 1.3.0.0debian1-3 (bookworm)
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2>= 0 < 1.3.0.0debian1-31.3.0.0debian1-3
enlightenmentimlib2>= 0 < 1.3.0.0debian1-31.3.0.0debian1-3
enlightenmentimlib2>= 0 < 1.3.0.0debian1-31.3.0.0debian1-3
enlightenmentimlib2>= 0 < 1.3.0.0debian1-31.3.0.0debian1-3

CVSS provenance

nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_debian5.1MEDIUM
vendor_redhat5.1MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.