CVE-2010-0991

CWE-119Buffer Overflow5 documents5 sources
Severity
6.8MEDIUM
EPSS
1.5%
top 19.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 22
Latest updateMay 2

Description

Multiple heap-based buffer overflows in imlib2 1.4.3 allow context-dependent attackers to execute arbitrary code via a crafted (1) ARGB, (2) XPM, or (3) BMP file, related to the IMAGE_DIMENSIONS_OK macro in lib/image.h.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-fh2h-w7j5-5fpp: Multiple heap-based buffer overflows in imlib2 12022-05-02
CVEList
CVE-2010-0991: Multiple heap-based buffer overflows in imlib2 12010-04-22

📋Vendor Advisories

1
Debian
CVE-2010-0991: imlib2 - Multiple heap-based buffer overflows in imlib2 1.4.3 allow context-dependent att...2010

💬Community

1
Bugzilla
CVE-2010-0991 imlib2: multiple heap-based buffer overflows2010-04-22
CVE-2010-0991 (MEDIUM CVSS 6.8) | Multiple heap-based buffer overflow | cvebase.io