Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute arbitrary code via certain n_col and cpp values that enable a heap-based buffer overflow. NOTE: this identifier is ONLY for gtk+. It was incorrectly referenced in an advisory for a different issue (CVE-2004-0687).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2004-09-17T04:00:00

Updated: 2024-08-08T00:31:47.416Z

Reserved: 2004-08-17T00:00:00

Link: CVE-2004-0782

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2004-10-20T04:00:00.000

Modified: 2023-08-11T20:18:12.293

Link: CVE-2004-0782

cve-icon Redhat

Severity : Important

Publid Date: 2004-09-15T00:00:00Z

Links: CVE-2004-0782 - Bugzilla