CVE-2005-3178
- EPSS 2.21%
- Veröffentlicht 07.10.2005 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in xloadimage 4.1 and earlier, and xli, might allow user-assisted attackers to execute arbitrary code via a long title name in a NIFF file, which triggers the overflow during (1) zoom, (2) reduce, or (3) rotate operations.
CVE-2005-0638
- EPSS 2.39%
- Veröffentlicht 02.03.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.
CVE-2005-0639
- EPSS 1.96%
- Veröffentlicht 02.03.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via "buffer management errors" from certain image properties, some of which may be related to integer overflows in PPM files.
CVE-2001-0775
- EPSS 25.56%
- Veröffentlicht 18.10.2001 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field.