CVE-2006-4808: Buffer Overflow
Published Nov 7, 2006
·Updated
Heap-based buffer overflow in loadertga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TGA image.
Affected Software
9 affected components
Enlightenment imlib2=1.0
Enlightenment imlib2=1.0.1
Enlightenment imlib2=1.0.2
Enlightenment imlib2=1.0.3
Enlightenment imlib2=1.0.4
Enlightenment imlib2=1.0.5
Enlightenment imlib2=1.1
Enlightenment imlib2=1.1.1
Enlightenment imlib2=1.1.2
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Nov 7, 2006
CVE Published
12:07 AM
Data Sourced
via NVD·12:07 AM
RemedyDescriptionSeverityAffected Software
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4808?
CVE-2006-4808 has a high severity rating due to its potential for causing a denial of service and the possibility of remote code execution.
2
Who is affected by CVE-2006-4808?
CVE-2006-4808 affects multiple versions of imlib2, specifically versions prior to 1.2.1.
3
How do I fix CVE-2006-4808?
To fix CVE-2006-4808, upgrade to imlib2 version 1.2.1 or later.
4
What type of vulnerability is CVE-2006-4808?
CVE-2006-4808 is a heap-based buffer overflow vulnerability.
5
What can attackers achieve with CVE-2006-4808?
Attackers can exploit CVE-2006-4808 to crash the application or potentially execute arbitrary code on the affected system.