Description
Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, related to image size calculation.
Affected products
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- Debian / debian_linux4.0 – 4.0
- gnu / emacs21 – 21
References
- VENDOR_ADVISORYhttp://www.debian.org/security/2007/dsa-1316
- VENDOR_ADVISORYhttp://www.novell.com/linux/security/advisories/2007_19_sr.html
- MISChttp://www.securitytracker.com/id?1018277
- VENDOR_ADVISORYhttp://bugs.debian.org/cgi-bin/bugreport.cgi?bug=408929
- VENDOR_ADVISORYhttp://www.ubuntu.com/usn/usn-504-1
- MISChttp://www.securityfocus.com/bid/24570
- VENDOR_ADVISORYhttp://www.mandriva.com/security/advisories?name=MDKSA-2007:133
- VENDOR_ADVISORYhttp://secunia.com/advisories/26987
- MISChttps://issues.rpath.com/browse/RPL-1490