CVE-2009-2295 (retired)

Priority
Description
Multiple integer overflows in CamlImages 2.2 and earlier might allow
context-dependent attackers to execute arbitrary code via a crafted PNG
image with large width and height values that trigger a heap-based buffer
overflow in the (1) read_png_file or (2) read_png_file_as_rgb24 function.
Notes
Package
Source: advi (LP Ubuntu Debian)
Upstream:released (1.6.0-15)
Package
Upstream:released (1:3.0.1-3)
More Information

Updated: 2019-10-09 07:18:15 UTC (commit 33aea848a182c0afcd0a3f927a01a7ecd9a061ee)