Show filters
77 Total Results
Displaying 71-77 of 77
Sort by:
Attacker Value
Unknown

CVE-2004-0994

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read_prf_file function in readprf.c. NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer. Therefore, they should be regarded as distinct.
0
Attacker Value
Unknown

CVE-2004-0999

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
zgv 5.5.3 allows remote attackers to cause a denial of service (application crash via segmentation fault) via crafted multiple-image (animated) GIF images.
0
Attacker Value
Unknown

CVE-2004-1717

Disclosure Date: August 16, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the psscan function in ps.c for gv (ghostview) allow remote attackers to execute arbitrary code via a Postscript file with a long (1) BoundingBox, (2) comment, (3) Orientation, (4) PageOrder, or (5) Pages value.
0
Attacker Value
Unknown

CVE-2002-1569

Disclosure Date: November 17, 2003 (last updated February 22, 2025)
gv 3.5.8, and possibly earlier versions, allows remote attackers to execute arbitrary commands via shell metacharacters in the filename for (1) a PDF file or (2) a gzip file.
0
Attacker Value
Unknown

CVE-2002-1245

Disclosure Date: November 12, 2002 (last updated February 22, 2025)
Maped in LuxMan 0.41 uses the user-provided search path to find and execute the gzip program, which allows local users to modify /dev/mem and gain privileges via a modified PATH environment variable that points to a Trojan horse gzip program.
0
Attacker Value
Unknown

CVE-2002-0838

Disclosure Date: October 10, 2002 (last updated February 22, 2025)
Buffer overflow in (1) gv 3.5.8 and earlier, (2) gvv 1.0.2 and earlier, (3) ggv 1.99.90 and earlier, (4) gnome-gv, and (5) kghostview in kdegraphics 2.2.2 and earlier, allows attackers to execute arbitrary code via a malformed (a) PDF or (b) PostScript file, which is processed by an unsafe call to sscanf.
0
Attacker Value
Unknown

CVE-2001-0808

Disclosure Date: December 06, 2001 (last updated February 22, 2025)
gnatsweb.pl in GNATS GnatsWeb 2.7 through 3.95 allows remote attackers to execute arbitrary commands via certain characters in the help_file parameter.
0