CVE-2005-0639

xli - Remote Code Execution via PPM Image Processing

Title source: manual
STIX 2.1

Description

Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via "buffer management errors" from certain image properties, some of which may be related to integer overflows in PPM files.

References (4)

Core 4
Core References
Vendor Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200503-05.xml
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/14459
Vendor Advisory x_refsource_confirm
http://bugs.gentoo.org/show_bug.cgi?id=79762
Vendor Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2005/dsa-695

Scores

EPSS 0.0196
EPSS Percentile 83.7%

Details

Status published
Products (28)
altlinux/alt_linux 2.3 (2 CPE variants)
suse/suse_linux 1.0
suse/suse_linux 2.0
suse/suse_linux 3.0
suse/suse_linux 4.0
suse/suse_linux 4.2
suse/suse_linux 4.3
suse/suse_linux 4.4
suse/suse_linux 4.4.1
suse/suse_linux 5.0
... and 18 more
Published Mar 02, 2005
Tracked Since Feb 18, 2026