~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
PublicDate: 2004-10-20
Candidate: CVE-2004-0783
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0783
Description:
 Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM
 image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before
 0.22, may allow remote attackers to execute arbitrary code via a certain
 color string.  NOTE: this identifier is ONLY for gtk+.  It was incorrectly
 referenced in an advisory for a different issue (CVE-2004-0688).
Ubuntu-Description:
Notes:
Bugs:
dapper_gtk+2.0: released (2.8.20-0ubuntu1.1)
edgy_gtk+2.0: released (2.10.6-0ubuntu3.1)
feisty_gtk+2.0: released (2.10.11-0ubuntu3)
devel_gtk+2.0: released (2.10.11-0ubuntu3)
upstream_gtk+2.0: