Skip to main content

Vendor/product archive

enlightenment / imlib2 CVEs

Beta · best-effort

22 CVEs tagged to enlightenment / imlib23 Critical, 13 High, 4 Medium, 2 Low, 0 Unrated.

CVE-2024-25448

Published Feb 9, 2024

An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-25447

Published Feb 9, 2024

An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-12761

Published May 9, 2020

modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via an icon with many colors in its color…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-3994

Published May 13, 2016

The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive information via a crafted image, which triggers…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3993

Published May 13, 2016

Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (out-of-bounds read and applicati…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-9771

Published May 13, 2016

Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application crash) via a crafted image, which triggers an inval…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0991

Published Apr 22, 2010

Multiple heap-based buffer overflows in imlib2 1.4.3 allow context-dependent attackers to execute arbitrary code via a crafted (1) ARGB, (2) XPM, or (3) BMP file, related to the I…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-6079

Published Feb 6, 2009

imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5) PNM, (6) TGA, or (7) XPM file, related…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-5187

Published Nov 21, 2008

The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-4806

Published Nov 7, 2006

Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) ARGB (loader_a…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4807

Published Nov 7, 2006

loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) via a crafted TGA image that triggers…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-4808

Published Nov 7, 2006

Heap-based buffer overflow in loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and poss…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-4809

Published Nov 7, 2006

Stack-based buffer overflow in loader_pnm.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and pos…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0827

Published Sep 16, 2004

Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and…

CVSS 7.5 · High
Showing 1-22 of 22 CVEsPage 1 of 1