imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5) PNM, (6) TGA, or (7) XPM file, related to "several heap and stack based buffer overflows - partly due to integer overflows."
2009-02-06T11:30:00.360
2025-04-09T00:30:58.490
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | enlightenment | imlib2 | ≤ 1.4.1 | Yes |
Application | enlightenment | imlib2 | 1.0 | Yes |
Application | enlightenment | imlib2 | 1.0.1 | Yes |
Application | enlightenment | imlib2 | 1.0.2 | Yes |
Application | enlightenment | imlib2 | 1.0.3 | Yes |
Application | enlightenment | imlib2 | 1.0.4 | Yes |
Application | enlightenment | imlib2 | 1.0.5 | Yes |
Application | enlightenment | imlib2 | 1.1 | Yes |
Application | enlightenment | imlib2 | 1.1.1 | Yes |
Application | enlightenment | imlib2 | 1.1.2 | Yes |
Application | enlightenment | imlib2 | 1.2.1 | Yes |
Application | enlightenment | imlib2 | 1.2.2 | Yes |
Application | enlightenment | imlib2 | 1.3.0 | Yes |
Application | enlightenment | imlib2 | 1.4.0 | Yes |