Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-0782

Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute arbitrary code via certain n_col and cpp values that enable a heap-based buffer overflow. NOTE: this identifier is ONLY for gtk+. It was incorrectly referenced in an advisory for a different issue (CVE-2004-0687).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.3
EPSS Ranking 96.4%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2004-0782
  • Gnome » Gdkpixbuf » Version: 0.17
    cpe:2.3:a:gnome:gdkpixbuf:0.17
  • Gnome » Gdkpixbuf » Version: 0.18
    cpe:2.3:a:gnome:gdkpixbuf:0.18
  • Gnome » Gdkpixbuf » Version: 0.20
    cpe:2.3:a:gnome:gdkpixbuf:0.20
  • Gnome » Gdkpixbuf » Version: 0.22
    cpe:2.3:a:gnome:gdkpixbuf:0.22
  • Gnome » Gtk » Version: 2.0.2
    cpe:2.3:a:gnome:gtk:2.0.2
  • Gnome » Gtk » Version: 2.0.6
    cpe:2.3:a:gnome:gtk:2.0.6
  • Gnome » Gtk » Version: 2.2.1
    cpe:2.3:a:gnome:gtk:2.2.1
  • Gnome » Gtk » Version: 2.2.3
    cpe:2.3:a:gnome:gtk:2.2.3
  • Gnome » Gtk » Version: 2.2.4
    cpe:2.3:a:gnome:gtk:2.2.4


Contact Us

Shodan ® - All rights reserved