all things security
Showing 1 - 1 of 1 RSS Feed

Files

Secunia - DevIL iGetHdrHeader() Buffer Overflows
Posted Jan 14, 2009
Authored by Stefan Cornelius | Site secunia.com

Secunia Research has discovered two vulnerabilities in DevIL, which can be exploited by malicious people to compromise an application using the library. The vulnerabilities are caused due to boundary errors within the "iGetHdrHeader()" function in src-IL/src/il_hdr.c. These can be exploited to cause a stack-based buffer overflow when processing specially crafted Radiance RGBE files. Successful exploitation allows execution of arbitrary code. Version 1.7.4 is affected.

tags | advisory, overflow, arbitrary, vulnerability
advisories | CVE-2008-5262
MD5 | 43cbf9044fd8b8ffdfd1f8f8634cc6f6
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close