Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read_prf_file function in readprf.c.  NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer.  Therefore, they should be regarded as distinct.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2005-01-10 05:00
Updated : 2017-07-11 01:30
NVD link : CVE-2004-0994
Mitre link : CVE-2004-0994
CVE.ORG link : CVE-2004-0994
JSON object : View
Products Affected
                debian
- debian_linux
zgv
- zgv_image_viewer
- xzgv_image_viewer
CWE
                