CVE-2019-5086
published 2019-11-21CVE-2019-5086: An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.0.7. An…
PriorityP347high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
3.15%
86.6th percentile
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.0.7. An integer overflow can occur while walking through tiles that could be exploited to corrupt memory and execute arbitrary code. In order to trigger this vulnerability, a victim would need to open a specially crafted XCF file.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| xcftools_project | xcftools | — | — |
| xcftools_project | xcftools | — | — |
| xcftools_project | xcftools | >= 0 < 1.0.7-6ubuntu0.1 | 1.0.7-6ubuntu0.1 |
| xcftools_project | xcftools | >= 0 < 1.0.7-6ubuntu0.20.04.1 | 1.0.7-6ubuntu0.20.04.1 |
| xcftools_project | xcftools | >= 0 < 1.0.7-5ubuntu0.1~esm1 | 1.0.7-5ubuntu0.1~esm1 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
xcftools vulnerabilities
osv·2023-03-29·CVSS 8.8
CVE-2019-5086 [HIGH] xcftools vulnerabilities
xcftools vulnerabilities
It was discovered that integer overflows vulnerabilities existed in Xcftools.
An attacker could use this to cause a denial of service (system crash) or
possibly execute arbitrary code. (CVE-2019-5086, CVE-2019-5087)
GHSA
GHSA-j44m-w6x3-678v: An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1
ghsa_unreviewed·2022-05-24
CVE-2019-5086 [MEDIUM] CWE-190 GHSA-j44m-w6x3-678v: An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.0.7. An integer overflow can occur while walking through tiles that could be exploited to corrupt memory and execute arbitrary code. In order to trigger this vulnerability, a victim would need to open a specially crafted XCF file.
OSV
CVE-2019-5086: An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1
osv·2019-11-21·CVSS 8.8
CVE-2019-5086 [HIGH] CVE-2019-5086: An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.0.7. An integer overflow can occur while walking through tiles that could be exploited to corrupt memory and execute arbitrary code. In order to trigger this vulnerability, a victim would need to open a specially crafted XCF file.
Ubuntu
Xcftools vulnerabilities
vendor_ubuntu·2023-03-29·CVSS 8.8
CVE-2019-5086 [HIGH] Xcftools vulnerabilities
Title: Xcftools vulnerabilities
Summary: Xcftools could be made to crash or run programs as an administrator
if it opened a specially crafted file.
It was discovered that integer overflows vulnerabilities existed in Xcftools.
An attacker could use this to cause a denial of service (system crash) or
possibly execute arbitrary code. (CVE-2019-5086, CVE-2019-5087)
Instructions: In general, a standard system update will make all the necessary changes.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Two remote code execution vulnerabilities in Xcftools
blogs_talos·2019-11-21·CVSS 8.8
[HIGH] Vulnerability Spotlight: Two remote code execution vulnerabilities in Xcftools
## Vulnerability Spotlight: Two remote code execution vulnerabilities in Xcftools
Claudio Bozzato of Cisco Talos discovered these vulnerabilities.
Xcftools contains two remote code execution vulnerabilities in its flattenIncrementally function. Xcftools is a set of tools for handling Gimp’s XCF files. The software provides tools to extract
information from an XCF file, and then converting XCF files into a PNG or PNM file. An attacker could exploit these bugs by tricking a user into opening a specially crafted XCF file.
Cisco Talos is disclosing these vulnerabilities after xcftools failed to patch them per Cisco’s 90-day deadline. Read more about the Cisco vulnerability disclosure policy here .
## Vulnerability details xcftools flattenIncrementally tiles walk code execution vulnerabili
Talos
Vulnerability Spotlight: Two remote code execution vulnerabilities in Xcftools
blogs_talos·2019-11-21·CVSS 8.8
[HIGH] Vulnerability Spotlight: Two remote code execution vulnerabilities in Xcftools
Claudio Bozzato of Cisco Talos discovered these vulnerabilities.
Xcftools contains two remote code execution vulnerabilities in its flattenIncrementally function. Xcftools is a set of tools for handling Gimp’s XCF files. The software provides tools to extract
information from an XCF file, and then converting XCF files into a PNG or PNM file. An attacker could exploit these bugs by tricking a user into opening a specially crafted XCF file.
Cisco Talos is disclosing these vulnerabilities after xcftools failed to patch them per Cisco’s 90-day deadline. Read more about the Cisco vulnerability disclosure policy here.
### Vulnerability detailsxcftools flattenIncrementally tiles walk code execution vulnerability (TALOS-2019-0878/CVE-2019-5086)
An exploitable integer overflow vulnerability ex
https://lists.debian.org/debian-lts-announce/2021/02/msg00014.htmlhttps://lists.debian.org/debian-lts-announce/2021/03/msg00008.htmlhttps://talosintelligence.com/vulnerability_reports/TALOS-2019-0878https://www.talosintelligence.com/vulnerability_reports/TALOS-2019-0878https://lists.debian.org/debian-lts-announce/2021/02/msg00014.htmlhttps://lists.debian.org/debian-lts-announce/2021/03/msg00008.htmlhttps://talosintelligence.com/vulnerability_reports/TALOS-2019-0878https://www.talosintelligence.com/vulnerability_reports/TALOS-2019-0878
2019-11-21
Published