Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read_prf_file function in readprf.c. NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer. Therefore, they should be regarded as distinct.
2005-01-10T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | zgv | xzgv_image_viewer | 0.6 | Yes |
Application | zgv | xzgv_image_viewer | 0.7 | Yes |
Application | zgv | xzgv_image_viewer | 0.8 | Yes |
Application | zgv | zgv_image_viewer | 5.5 | Yes |
Application | zgv | zgv_image_viewer | 5.6 | Yes |
Application | zgv | zgv_image_viewer | 5.7 | Yes |
Application | zgv | zgv_image_viewer | 5.8 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |
Operating System | debian | debian_linux | 3.0 | Yes |