Unrated severityNVD Advisory· Published Oct 20, 2009· Updated Apr 23, 2026
CVE-2009-3296
CVE-2009-3296
Description
Multiple integer overflows in tiffread.c in CamlImages 2.2 might allow remote attackers to execute arbitrary code via TIFF images containing large width and height values that trigger heap-based buffer overflows.
Affected products
1- cpe:2.3:a:gallium.inria:camimages:2.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- security.debian.org/pool/updates/main/c/camlimages/camlimages_2.2.0-4+lenny3.diff.gznvdPatch
- security.debian.org/pool/updates/main/c/camlimages/camlimages_2.20-8+etch3.diff.gznvdPatch
- www.debian.org/security/2009/dsa-1912nvdPatch
- www.securityfocus.com/bid/36713nvdPatch
- secunia.com/advisories/37067nvdVendor Advisory
News mentions
0No linked articles in our index yet.