← Back

CVE-2007-2949

nvd nist
Published: Jul 4, 2007Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Integer overflow in the seek_to_and_unpack_pixeldata function in the psd.c plugin in Gimp 2.2.15 allows remote attackers to execute arbitrary code via a crafted PSD file that contains a large (1) width or (2) height value.

Affected (4)

1 product
Gimp
1 product
Ubuntu Linux
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.2.15
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 6.06
Version 6.10
Version 7.04

References (60)

Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkPatch
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkPatchVendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Third Party Advisory
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Vendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Third Party Advisory
Source: PSIRT-CNA@flexerasoftware.com
Third Party AdvisoryUS Government Resource
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkThird Party AdvisoryVDB Entry
Source: PSIRT-CNA@flexerasoftware.com
Third Party Advisory
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Third Party AdvisoryVDB Entry
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link

Timeline

No history available yet.