CVE-2008-1670: Buffer Overflow
Heap-based buffer overflow in the progressive PNG Image loader (decoders/pngloader.cpp) in KHTML in KDE 4.0.x up to 4.0.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted image.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1670?
CVE-2008-1670 has a high severity as it can lead to denial of service and potential execution of arbitrary code.
How do I fix CVE-2008-1670?
To mitigate CVE-2008-1670, upgrade to KDE version 4.0.4 or later, which contains patches for this vulnerability.
What components are affected by CVE-2008-1670?
CVE-2008-1670 affects the KHTML progressive PNG Image loader in KDE versions 4.0.0 through 4.0.3.
Can CVE-2008-1670 be exploited remotely?
Yes, CVE-2008-1670 can be exploited remotely through specially crafted PNG images.
What kind of attacks can CVE-2008-1670 enable?
CVE-2008-1670 can enable denial of service attacks or potentially arbitrary code execution on the affected system.