CVE-2006-2440
Dashboard / Vulnerabilities / CVE-2006-2440
CVE-2006-2440
Summary:
Details: Heap-based buffer overflow in the libMagick component of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function.
References: ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.asc, http://secunia.com/advisories/21719, http://secunia.com/advisories/24186, http://secunia.com/advisories/24284, http://www.debian.org/security/2006/dsa-1168, http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=345595, http://www.redhat.com/support/errata/RHSA-2007-0015.html, https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9481
