CVE-2009-2688
published 2009-08-05CVE-2009-2688: Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to cause a denial of service (crash) or…
PriorityP344critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
8.64%
94.5th percentile
Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) the tiff_instantiate function processing a crafted TIFF file, (2) the png_instantiate function processing a crafted PNG file, and (3) the jpeg_instantiate function processing a crafted JPEG file, all which trigger a heap-based buffer overflow. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xemacs21 | < xemacs21 21.4.22-3 (bookworm) | xemacs21 21.4.22-3 (bookworm) |
| xemacs | xemacs | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_debian10.0LOW
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jvwc-xf39-g9w4: Multiple integer overflows in glyphs-eimage
ghsa_unreviewed·2022-05-02
CVE-2009-2688 [HIGH] GHSA-jvwc-xf39-g9w4: Multiple integer overflows in glyphs-eimage
Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) the tiff_instantiate function processing a crafted TIFF file, (2) the png_instantiate function processing a crafted PNG file, and (3) the jpeg_instantiate function processing a crafted JPEG file, all which trigger a heap-based buffer overflow. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
OSV
CVE-2009-2688: Multiple integer overflows in glyphs-eimage
osv·2009-08-05·CVSS 10.0
CVE-2009-2688 [CRITICAL] CVE-2009-2688: Multiple integer overflows in glyphs-eimage
Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) the tiff_instantiate function processing a crafted TIFF file, (2) the png_instantiate function processing a crafted PNG file, and (3) the jpeg_instantiate function processing a crafted JPEG file, all which trigger a heap-based buffer overflow. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Red Hat
xemacs: multiple integer overflow flaws
vendor_redhat·2009-06-25·CVSS 10.0
CVE-2009-2688 [CRITICAL] CWE-190 xemacs: multiple integer overflow flaws
xemacs: multiple integer overflow flaws
Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) the tiff_instantiate function processing a crafted TIFF file, (2) the png_instantiate function processing a crafted PNG file, and (3) the jpeg_instantiate function processing a crafted JPEG file, all which trigger a heap-based buffer overflow. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Package: xemacs (Red Hat Enterprise Linux 4) - Will not fix
Debian
CVE-2009-2688: xemacs21 - Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on...
vendor_debian·2009·CVSS 10.0
CVE-2009-2688 [CRITICAL] CVE-2009-2688: xemacs21 - Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on...
Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) the tiff_instantiate function processing a crafted TIFF file, (2) the png_instantiate function processing a crafted PNG file, and (3) the jpeg_instantiate function processing a crafted JPEG file, all which trigger a heap-based buffer overflow. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Scope: local
bookworm: resolved (fixed in 21.4.22-3)
bullseye: resolved (fixed in 21.4.22-3)
sid: resolved (fixed in 21.4.22-3)
No detection rules found.
http://osvdb.org/55298http://secunia.com/advisories/35348http://tracker.xemacs.org/XEmacs/its/issue534http://www.securityfocus.com/bid/35473http://www.vupen.com/english/advisories/2009/1666https://bugs.gentoo.org/show_bug.cgi?id=275397https://bugzilla.redhat.com/show_bug.cgi?id=511994https://exchange.xforce.ibmcloud.com/vulnerabilities/51332https://exchange.xforce.ibmcloud.com/vulnerabilities/51333https://exchange.xforce.ibmcloud.com/vulnerabilities/51334http://osvdb.org/55298http://secunia.com/advisories/35348http://tracker.xemacs.org/XEmacs/its/issue534http://www.securityfocus.com/bid/35473http://www.vupen.com/english/advisories/2009/1666https://bugs.gentoo.org/show_bug.cgi?id=275397https://bugzilla.redhat.com/show_bug.cgi?id=511994https://exchange.xforce.ibmcloud.com/vulnerabilities/51332https://exchange.xforce.ibmcloud.com/vulnerabilities/51333https://exchange.xforce.ibmcloud.com/vulnerabilities/51334
2009-08-05
Published