Информационная безопасность
[RU] switch to
English Version



CVECVE-2007-5503
СтатусUNKNOWN
ОписаниеMultiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function.
ВажностьMedium
CVSS score6,8
CVSS vector(AV:N/AC:M/Au:N/C:P/I:P/A:P)
PhaseASSIGNED (09.09.2011)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-5503
ReferencesBID : 26650
 BUGTRAQ : 20080115 rPSA-2008-0015-1 cairo
 BUGTRAQ : 20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues.
 CONFIRM : http://bugs.gentoo.org/show_bug.cgi?id=200350
 CONFIRM : http://gitweb.freedesktop.org/?p=cairo;a=commitdif...
 CONFIRM : http://gitweb.freedesktop.org/?p=cairo;a=commitdif...
 CONFIRM : http://gitweb.freedesktop.org/?p=cairo;a=commitdif...
 CONFIRM : http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0015
 CONFIRM : http://www.vmware.com/security/advisories/VMSA-200...
 CONFIRM : http://www.vmware.com/support/player2/doc/releasen...
 CONFIRM : http://www.vmware.com/support/server/doc/releaseno...
 CONFIRM : http://www.vmware.com/support/ws6/doc/releasenotes...
 CONFIRM : https://bugzilla.redhat.com/show_bug.cgi?id=387431
 CONFIRM : https://issues.rpath.com/browse/RPL-1966
 DEBIAN : DSA-1542
 FEDORA : FEDORA-2007-3818
 FULLDISC : 20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues.
 GENTOO : GLSA-200712-04
 GENTOO : GLSA-200712-24
 MANDRIVA : MDVSA-2008:019
 MISC : http://bugs.gentoo.org/show_bug.cgi?id=201860
 MISC : https://bugzilla.redhat.com/show_bug.cgi?id=387431
 OVAL : oval:org.mitre.oval:def:11251
 REDHAT : RHSA-2007:1078
 SECTRACK : 1019027
 SECUNIA : 27775
 SECUNIA : 27819
 SECUNIA : 27880
 SECUNIA : 27887
 SECUNIA : 27985
 SECUNIA : 28289
 SECUNIA : 28476
 SECUNIA : 28529
 SECUNIA : 28555
 SECUNIA : 28838
 SECUNIA : 29767
 SECUNIA : 31707
 SECUNIA : 31711
 SLACKWARE : SSA:2007-337-01
 SUSE : SUSE-SR:2008:003
 UBUNTU : USN-550-1
 UBUNTU : USN-550-2
 VUPEN : ADV-2007-4045
 VUPEN : ADV-2008-2466
 XF : cario-readpng-bo(38771)
SecurityVulns:Многочисленные уязвимости безопасности в продуктах VMWare

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server