Description
Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.
Published: 2010-02-12
Score: 7.5 High
EPSS: 2.6% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-2026-1 New netpbm-free packages fix denial of service
EUVD EUVD EUVD-2009-4242 Stack-based buffer overflow in converter/ppm/xpmtoppm.c in netpbm before 10.47.07 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an XPM image file that contains a crafted header field associated with a large color index value.
Ubuntu USN Ubuntu USN USN-934-1 Netpbm vulnerability
History

No history.

Subscriptions

Netpbm Netpbm
Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-07T06:54:10.362Z

Reserved: 2009-12-10T00:00:00.000Z

Link: CVE-2009-4274

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2010-02-12T21:30:00.533

Modified: 2025-04-11T00:51:21.963

Link: CVE-2009-4274

cve-icon Redhat

Severity : Moderate

Publid Date: 2010-02-09T00:00:00Z

Links: CVE-2009-4274 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses