| CVE |  | CVE-2007-5503 |
| Статус |  | UNKNOWN |
| Описание |  | Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function. |
| Важность |  | Medium |
| CVSS score |  | 6,8 |
| CVSS vector |  | (AV:N/AC:M/Au:N/C:P/I:P/A:P) |
| Phase |  | ASSIGNED (09.09.2011) |
| NVD: |  | http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-5503 |
| References |  | BID : 26650 |
| |  | BUGTRAQ : 20080115 rPSA-2008-0015-1 cairo |
| |  | BUGTRAQ : 20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues. |
| |  | CONFIRM : http://bugs.gentoo.org/show_bug.cgi?id=200350 |
| |  | CONFIRM : http://gitweb.freedesktop.org/?p=cairo;a=commitdif... |
| |  | CONFIRM : http://gitweb.freedesktop.org/?p=cairo;a=commitdif... |
| |  | CONFIRM : http://gitweb.freedesktop.org/?p=cairo;a=commitdif... |
| |  | CONFIRM : http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0015 |
| |  | CONFIRM : http://www.vmware.com/security/advisories/VMSA-200... |
| |  | CONFIRM : http://www.vmware.com/support/player2/doc/releasen... |
| |  | CONFIRM : http://www.vmware.com/support/server/doc/releaseno... |
| |  | CONFIRM : http://www.vmware.com/support/ws6/doc/releasenotes... |
| |  | CONFIRM : https://bugzilla.redhat.com/show_bug.cgi?id=387431 |
| |  | CONFIRM : https://issues.rpath.com/browse/RPL-1966 |
| |  | DEBIAN : DSA-1542 |
| |  | FEDORA : FEDORA-2007-3818 |
| |  | FULLDISC : 20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues. |
| |  | GENTOO : GLSA-200712-04 |
| |  | GENTOO : GLSA-200712-24 |
| |  | MANDRIVA : MDVSA-2008:019 |
| |  | MISC : http://bugs.gentoo.org/show_bug.cgi?id=201860 |
| |  | MISC : https://bugzilla.redhat.com/show_bug.cgi?id=387431 |
| |  | OVAL : oval:org.mitre.oval:def:11251 |
| |  | REDHAT : RHSA-2007:1078 |
| |  | SECTRACK : 1019027 |
| |  | SECUNIA : 27775 |
| |  | SECUNIA : 27819 |
| |  | SECUNIA : 27880 |
| |  | SECUNIA : 27887 |
| |  | SECUNIA : 27985 |
| |  | SECUNIA : 28289 |
| |  | SECUNIA : 28476 |
| |  | SECUNIA : 28529 |
| |  | SECUNIA : 28555 |
| |  | SECUNIA : 28838 |
| |  | SECUNIA : 29767 |
| |  | SECUNIA : 31707 |
| |  | SECUNIA : 31711 |
| |  | SLACKWARE : SSA:2007-337-01 |
| |  | SUSE : SUSE-SR:2008:003 |
| |  | UBUNTU : USN-550-1 |
| |  | UBUNTU : USN-550-2 |
| |  | VUPEN : ADV-2007-4045 |
| |  | VUPEN : ADV-2008-2466 |
| |  | XF : cario-readpng-bo(38771) |
| SecurityVulns: |  | Многочисленные уязвимости безопасности в продуктах VMWare |