CVE-2005-0639
Summary
| CVE | CVE-2005-0639 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-03-02 05:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via "buffer management errors" from certain image properties, some of which may be related to integer overflows in PPM files. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Altlinux | Alt Linux | 2.3 | All | compact | All |
| Operating System | Altlinux | Alt Linux | 2.3 | All | junior | All |
| Operating System | Suse | Suse Linux | 1.0 | All | All | All |
| Operating System | Suse | Suse Linux | 2.0 | All | All | All |
| Operating System | Suse | Suse Linux | 3.0 | All | All | All |
| Operating System | Suse | Suse Linux | 4.0 | All | All | All |
| Operating System | Suse | Suse Linux | 4.2 | All | All | All |
| Operating System | Suse | Suse Linux | 4.3 | All | All | All |
| Operating System | Suse | Suse Linux | 4.4 | All | All | All |
| Operating System | Suse | Suse Linux | 4.4.1 | All | All | All |
| Operating System | Suse | Suse Linux | 5.0 | All | All | All |
| Operating System | Suse | Suse Linux | 5.1 | All | All | All |
| Operating System | Suse | Suse Linux | 5.2 | All | All | All |
| Operating System | Suse | Suse Linux | 5.3 | All | All | All |
| Operating System | Suse | Suse Linux | 6.0 | All | All | All |
| Operating System | Suse | Suse Linux | 6.1 | All | All | All |
| Operating System | Suse | Suse Linux | 6.1 | alpha | All | All |
| Operating System | Suse | Suse Linux | 6.2 | All | All | All |
| Operating System | Suse | Suse Linux | 6.3 | All | All | All |
| Operating System | Suse | Suse Linux | 6.3 | All | ppc | All |
| Operating System | Suse | Suse Linux | 6.3 | alpha | All | All |
| Operating System | Suse | Suse Linux | 6.4 | All | All | All |
| Operating System | Suse | Suse Linux | 6.4 | All | i386 | All |
| Operating System | Suse | Suse Linux | 6.4 | All | ppc | All |
| Operating System | Suse | Suse Linux | 6.4 | alpha | All | All |
| Operating System | Suse | Suse Linux | 7.0 | All | All | All |
| Operating System | Suse | Suse Linux | 7.0 | All | i386 | All |
| Operating System | Suse | Suse Linux | 7.0 | All | ppc | All |
| Operating System | Suse | Suse Linux | 7.0 | All | sparc | All |
| Operating System | Suse | Suse Linux | 7.0 | alpha | All | All |
| Operating System | Suse | Suse Linux | 7.1 | All | All | All |
| Operating System | Suse | Suse Linux | 7.1 | All | spa | All |
| Operating System | Suse | Suse Linux | 7.1 | All | sparc | All |
| Operating System | Suse | Suse Linux | 7.1 | All | x86 | All |
| Operating System | Suse | Suse Linux | 7.1 | alpha | All | All |
| Operating System | Suse | Suse Linux | 7.2 | All | All | All |
| Operating System | Suse | Suse Linux | 7.2 | All | i386 | All |
| Operating System | Suse | Suse Linux | 7.3 | All | All | All |
| Operating System | Suse | Suse Linux | 7.3 | All | i386 | All |
| Operating System | Suse | Suse Linux | 7.3 | All | ppc | All |
| Operating System | Suse | Suse Linux | 7.3 | All | sparc | All |
| Operating System | Suse | Suse Linux | 8.0 | All | All | All |
| Operating System | Suse | Suse Linux | 8.0 | All | i386 | All |
| Operating System | Suse | Suse Linux | 8.1 | All | All | All |
| Operating System | Suse | Suse Linux | 8.2 | All | All | All |
| Operating System | Suse | Suse Linux | 9.0 | All | All | All |
| Operating System | Suse | Suse Linux | 9.0 | All | x86_64 | All |
| Operating System | Suse | Suse Linux | 9.1 | All | All | All |
| Operating System | Suse | Suse Linux | 9.1 | All | x86_64 | All |
| Operating System | Suse | Suse Linux | 9.2 | All | All | All |
| Operating System | Suse | Suse Linux | 9.2 | All | x86_64 | All |
| Operating System | Suse | Suse Linux | 9.3 | All | All | All |
| Application | Xli | Xli | 1.14 | All | All | All |
| Application | Xli | Xli | 1.15 | All | All | All |
| Application | Xli | Xli | 1.16 | All | All | All |
| Application | Xli | Xli | 1.17 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Gentoo Bug 79762 - media-gfx/{xloadimage,xli}: multiple vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | bugs.gentoo.org | Vendor Advisory |
| Gentoo Linux Documentation -- xli, xloadimage: Multiple vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | security.gentoo.org | Vendor Advisory |
| Debian -- Security Information -- DSA-695-1 xli | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Vendor Advisory |
| Secunia - Advisories - xli Multiple Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.