Description
Heap-based buffer overflow in loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TGA image.
CVSS vector
AV:N/AC:H/C:N/I:N/A:PExploitability: 4.9 | Impact: 2.9Complexity: High
Confidentiality: None
Integrity: None
Affected Packages2 packages
▶Debianimlib2< 1.3.0.0debian1-3+3 🔴Vulnerability Details
3GHSAGHSA-hcr5-cf9m-7gf4: Heap-based buffer overflow in loader_tga↗2022-05-01 ▶ CVEListCVE-2006-4808: Heap-based buffer overflow in loader_tga↗2006-11-07 ▶ OSVCVE-2006-4808: Heap-based buffer overflow in loader_tga↗2006-11-07 ▶ 💥Exploits & PoCs
1Exploit-DBphpBB lat2cyr Mod 1.0.1 - 'lat2cyr.php' Remote File Inclusion↗2006-10-13 ▶ 📋Vendor Advisories
4Ubuntuimlib2 vulnerabilities↗2006-11-03 ▶ DebianCVE-2006-4808: imlib2 - Heap-based buffer overflow in loader_tga.c in imlib2 before 1.2.1, and possibly ...↗2006 ▶ Red HatCVE-2006-4808: Heap-based buffer overflow in loader_tga↗ ▶ Red HatCVE-2006-4807: loader_tga↗ ▶ 💬Community
1BugzillaCVE-2006-480[6-9] imlib2 multiple vulnerabilities↗2006-11-08 ▶