CVE-2007-2356: Buffer Overflow
Published Apr 30, 2007
·Updated
Stack-based buffer overflow in the setcolortable function in sunras.c in the SUNRAS plugin in Gimp 2.2.14 allows user-assisted remote attackers to execute arbitrary code via a crafted RAS file.
Affected Software
1 affected component
GIMP=2.2.14
Remediation
Patch Available
Patch Available
Patch Available
Event History
Apr 30, 2007
CVE Published
10:19 PM
May 1, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2356?
CVE-2007-2356 is classified as high severity due to its potential for remote code execution.
2
How do I fix CVE-2007-2356?
To fix CVE-2007-2356, upgrade to a patched version of GIMP that mitigates the buffer overflow vulnerability.
3
What does CVE-2007-2356 affect?
CVE-2007-2356 affects GIMP version 2.2.14 due to a vulnerability in the SUNRAS plugin.
4
What is the attack vector for CVE-2007-2356?
The attack vector for CVE-2007-2356 involves user-assisted exploitation by opening a crafted RAS file.
5
Can CVE-2007-2356 be exploited remotely?
Yes, CVE-2007-2356 can be exploited remotely if the user opens a malicious file, making it user-assisted.