cbcvebase.
CVE-2008-6079
published 2009-02-06

CVE-2008-6079: imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5) PNM, (6) TGA, or…

critical10CVSS 3.1
AVNACLAuNCCICAC
imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5) PNM, (6) TGA, or (7) XPM file, related to "several heap and stack based buffer overflows - partly due to integer overflows."

Affected

19 ranges
VendorProductVersion rangeFixed in
debianimlib2< imlib2 1.4.2-1 (bookworm)imlib2 1.4.2-1 (bookworm)
enlightenmentimlib2<= 1.4.1
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2
enlightenmentimlib2>= 0 < 1.4.2-11.4.2-1
enlightenmentimlib2>= 0 < 1.4.2-11.4.2-1
enlightenmentimlib2>= 0 < 1.4.2-11.4.2-1
enlightenmentimlib2>= 0 < 1.4.2-11.4.2-1

CVSS provenance

nvd10.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL