Page 2 of 7 results (0.003 seconds)

CVSS: 6.8EPSS: 33%CPEs: 3EXPL: 0

Buffer overflow in the ReadImage function in generic/tkImgGIF.c in Tcl (Tcl/Tk) 8.4.13 through 8.4.15 allows remote attackers to execute arbitrary code via multi-frame interlaced GIF files in which later frames are smaller than the first. NOTE: this issue is due to an incorrect patch for CVE-2007-5378. Un desbordamiento de búfer en la función ReadImage en el archivo generic/tkImgGIF.c en Tcl (Tcl/Tk) versiones 8.4.13 hasta 8.4.15, permite a atacantes remotos ejecutar código arbitrario por medio de archivos GIF entrelazados de múlti-trama en los que las tramas posteriores son más pequeñas que la primera. NOTA: este problema es debido a un parche incorrecto para CVE-2007-5378. • http://bugs.gentoo.org/show_bug.cgi?id=192539 http://secunia.com/advisories/26942 http://secunia.com/advisories/27086 http://secunia.com/advisories/27182 http://secunia.com/advisories/27207 http://secunia.com/advisories/27229 http://secunia.com/advisories/27295 http://secunia.com/advisories/29069 http://secunia.com/advisories/34297 http://security.gentoo.org/glsa/glsa-200710-07.xml http://sourceforge.net/project/shownotes.php?release_id=541207 http://www.attrition.org/p • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in tcl/win/tclWinReg.c in Tcl (Tcl/Tk) before 8.5a6 allows local users to gain privileges via long registry key paths. Desbordamiento de búfer en tcl/win/tclWinReg.c en Tcl (Tcl/Tk) anterior a 8.5a6 permite a usuarios locales obtener privilegios mediante rutas de clave de registro largas. • http://osvdb.org/36528 http://secunia.com/advisories/25401 http://sourceforge.net/project/shownotes.php?group_id=10894&release_id=503937 http://sourceforge.net/tracker/index.php?func=detail&aid=1682211&group_id=10894&atid=110894 https://exchange.xforce.ibmcloud.com/vulnerabilities/34515 •