CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
AI Score
Confidence
Low
EPSS
Percentile
94.7%
Heap-based buffer overflow in the BMP reader (bmp.c) in Imager perl module (libimager-perl) 0.45 through 0.56 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted 8-bit/pixel compressed BMP files.
Vendor | Product | Version | CPE |
---|---|---|---|
tony_cook | imager | 0.44 | cpe:2.3:a:tony_cook:imager:0.44:*:*:*:*:*:*:* |
tony_cook | imager | 0.44_1 | cpe:2.3:a:tony_cook:imager:0.44_1:*:*:*:*:*:*:* |
tony_cook | imager | 0.45 | cpe:2.3:a:tony_cook:imager:0.45:*:*:*:*:*:*:* |
tony_cook | imager | 0.45_2 | cpe:2.3:a:tony_cook:imager:0.45_2:*:*:*:*:*:*:* |
tony_cook | imager | 0.46 | cpe:2.3:a:tony_cook:imager:0.46:*:*:*:*:*:*:* |
tony_cook | imager | 0.47 | cpe:2.3:a:tony_cook:imager:0.47:*:*:*:*:*:*:* |
tony_cook | imager | 0.48 | cpe:2.3:a:tony_cook:imager:0.48:*:*:*:*:*:*:* |
tony_cook | imager | 0.49 | cpe:2.3:a:tony_cook:imager:0.49:*:*:*:*:*:*:* |
tony_cook | imager | 0.50 | cpe:2.3:a:tony_cook:imager:0.50:*:*:*:*:*:*:* |
tony_cook | imager | 0.51 | cpe:2.3:a:tony_cook:imager:0.51:*:*:*:*:*:*:* |
bugs.debian.org/cgi-bin/bugreport.cgi?bug=421582
imager.perl.org/a/65.html
osvdb.org/35470
osvdb.org/39846
rt.cpan.org/Public/Bug/Display.html?id=26811
secunia.com/advisories/25038
secunia.com/advisories/28868
www.debian.org/security/2008/dsa-1498
www.securityfocus.com/bid/23711
www.vupen.com/english/advisories/2007/1587
exchange.xforce.ibmcloud.com/vulnerabilities/34010