Multiple integer overflows in tiffread.c in CamlImages 2.2 might allow remote attackers to execute arbitrary code via TIFF images containing large width and height values that trigger heap-based buffer overflows.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://security.debian.org/pool/updates/main/c/camlimages/camlimages_2.2.0-4+lenny3.diff.gz | patch |
http://www.debian.org/security/2009/dsa-1912 | patch vendor advisory |
http://secunia.com/advisories/37067 | third party advisory vendor advisory |
http://security.debian.org/pool/updates/main/c/camlimages/camlimages_2.20-8+etch3.diff.gz | patch |
http://www.securityfocus.com/bid/36713 | vdb entry patch |