CVE-2004-1025: Buffer Overflow
Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1025?
CVE-2004-1025 is classified as a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2004-1025?
To fix CVE-2004-1025, upgrade imlib to version 1.9.15 or later, which addresses the buffer overflow vulnerabilities.
What applications are affected by CVE-2004-1025?
CVE-2004-1025 affects imlib 1.9.14 and earlier versions, commonly used by gkrellm and several window managers.
Can CVE-2004-1025 cause data loss?
While CVE-2004-1025 primarily leads to application crashes, there is a risk of data loss if the application was handling unsaved data.
Are all versions of imlib affected by CVE-2004-1025?
Only imlib versions 1.9.14 and earlier are affected by CVE-2004-1025, so newer versions are not vulnerable.