|
|
| |
| XnView 1.98.8 TIFF Image Processing suffers from heap overflow vulnerability |
| |
Credit:
The information has been provided by Francis Provencher.
|
| |
Vulnerable Systems:
* XnView 1.98.8 GIF Image Processing
Insufficient validation when decompressing SGI32LogLum compressed TIFF images can be exploited to cause a heap-based buffer overflow.
The vulnerabilities are confirmed in version 1.98.8. Other versions may also be affected
The Code
http://protekresearchlab.com/exploits/PRL-2012-15.tif
http://www.exploit-db.com/sploits/19338.tif
CVE Information:
2012-0276
Disclosure Timeline:
2012-05-15 Vulnerability reported to Secunia
2012-06-21 Vendor disclose patch
|
|
blog comments powered by
|