Product
enlightenment imlib2
32 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-25450
CVE-2024-25448
CVE-2024-25447
CVE-2022-37706
CVE-2020-12761
CVE-2018-20167
CVE-2014-1846
CVE-2014-1845
CVE-2015-8971
CVE-2016-4024
CVE-2016-3994
CVE-2016-3993
CVE-2014-9771
CVE-2014-9764
CVE-2014-9763
CVE-2014-9762
CVE-2011-5326
CVE-2010-0991
CVE-2008-6079
CVE-2008-5187
CVE-2006-4809
CVE-2006-4808
CVE-2006-4807
CVE-2006-4806
CVE-2004-1026
CVE-2004-1025
CVE-2004-0817
CVE-2004-0802
CVE-2004-0827
CVE-2002-0168
CVE-2002-0167
CVE-2002-0143
all versions
imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().
all versions
An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsin
all versions
An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via
< 0.25.4
enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system l
all versions
modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds
< 1.3.1
Terminology before 1.3.1 allows Remote Code Execution because popmedia is mishandled, as demonstrated by an unsafe "cat README.md"
< 0.17.6
Enlightenment before 0.17.6 might allow local users to gain privileges via vectors involving the gdb method.
< 0.17.6
An unspecified setuid root helper in Enlightenment before 0.17.6 allows local users to gain privileges by leveraging failure to pr
all versions
Terminology 0.7.0 allows remote attackers to execute arbitrary commands via escape sequences that modify the window title and then
<= 1.4.8
Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions
<= 1.4.8
The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive
<= 1.4.8
Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a de
<= 1.4.6
Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application cr
<= 1.4.6
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.
<= 1.4.6
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafte
<= 1.4.6
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a colormap.
<= 1.4.8
imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a
all versions
Multiple heap-based buffer overflows in imlib2 1.4.3 allow context-dependent attackers to execute arbitrary code via a crafted (1)
<= 1.4.1
imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4
all versions
The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (
all versions
Stack-based buffer overflow in loader_pnm.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attac
all versions
Heap-based buffer overflow in loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attack
all versions
loader_tga.c in imlib2 before 1.2.1, and possibly other versions, allows user-assisted remote attackers to cause a denial of servi
all versions
Multiple integer overflows in imlib2 allow user-assisted remote attackers to cause a denial of service (crash) and possibly execut
all versions
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers
all versions
Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remo
all versions
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted
all versions
Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted
all versions
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to
all versions
Vulnerability in Imlib before 1.9.13 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by
all versions
Imlib before 1.9.13 sometimes uses the NetPBM package to load trusted images, which could allow attackers to cause a denial of ser
all versions
Buffer overflow in Eterm of Enlightenment Imlib2 1.0.4 and earlier allows local users to execute arbitrary code via a long HOME en