CVE-2002-0168: High severity Enlightenment Imlib vulnerability
Published Apr 22, 2002
·Updated
Vulnerability in Imlib before 1.9.13 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by manipulating arguments that are passed to malloc, which results in a heap corruption.
Affected Software
13 affected components
Enlightenment Imlib=1.9.8
Enlightenment Imlib=1.9.3
Enlightenment Imlib=1.9.7
Enlightenment Imlib=1.9.1
Enlightenment Imlib=1.9.10
Enlightenment Imlib=1.9.4
Enlightenment Imlib=1.9.2
Enlightenment Imlib=1.9.11
Enlightenment Imlib=1.9.12
Enlightenment Imlib=1.9.9
Enlightenment Imlib=1.9.5
Enlightenment Imlib=1.9.6
Enlightenment Imlib=1.9
Remediation
Patch Available
Event History
Apr 22, 2002
CVE Published
04:00 AM
Jun 25, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0168?
CVE-2002-0168 has a high severity level due to its potential to cause denial of service and allow arbitrary code execution.
2
How do I fix CVE-2002-0168?
You can fix CVE-2002-0168 by upgrading to a version of Imlib that is 1.9.13 or later.
3
What versions of Imlib are affected by CVE-2002-0168?
The affected versions include Imlib versions 1.9.1 to 1.9.12.
4
How does CVE-2002-0168 exploit malloc arguments?
CVE-2002-0168 exploits vulnerabilities in the handling of malloc arguments, leading to heap corruption.
5
What are the potential impacts of CVE-2002-0168?
The potential impacts of CVE-2002-0168 include application crashes and the ability for attackers to execute arbitrary code.