CVE-2002-0167: High severity Enlightenment Imlib vulnerability
Published Apr 22, 2002
·Updated
Imlib before 1.9.13 sometimes uses the NetPBM package to load trusted images, which could allow attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain weaknesses of NetPBM.
Affected Software
13 affected components
Enlightenment Imlib=1.9
Enlightenment Imlib=1.9.1
Enlightenment Imlib=1.9.2
Enlightenment Imlib=1.9.3
Enlightenment Imlib=1.9.4
Enlightenment Imlib=1.9.5
Enlightenment Imlib=1.9.6
Enlightenment Imlib=1.9.7
Enlightenment Imlib=1.9.8
Enlightenment Imlib=1.9.9
Enlightenment Imlib=1.9.10
Enlightenment Imlib=1.9.11
Enlightenment Imlib=1.9.12
Remediation
Patch Available
Event History
Apr 22, 2002
CVE Published
04:00 AM
Jun 25, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0167?
CVE-2002-0167 is considered a moderate severity vulnerability due to its potential to cause denial of service and possible arbitrary code execution.
2
How do I fix CVE-2002-0167?
To fix CVE-2002-0167, upgrade to a version of Imlib that is 1.9.13 or later.
3
What software is affected by CVE-2002-0167?
CVE-2002-0167 affects multiple versions of the Imlib library, specifically versions prior to 1.9.13.
4
What are the potential impacts of CVE-2002-0167?
The potential impacts of CVE-2002-0167 include application crashes and the execution of arbitrary code.
5
Is CVE-2002-0167 a known vulnerability?
Yes, CVE-2002-0167 is a known vulnerability that has been documented for over two decades.