Unrated severityNVD Advisory· Published Nov 11, 2012· Updated Jun 16, 2026
CVE-2012-4564
CVE-2012-4564
Description
ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
17cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*+ 4 more
- cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_eus:6.3:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
11- bugzilla.redhat.com/show_bug.cginvdExploitIssue TrackingPatchThird Party Advisory
- lists.opensuse.org/opensuse-updates/2013-01/msg00076.htmlnvdMailing ListThird Party Advisory
- rhn.redhat.com/errata/RHSA-2012-1590.htmlnvdThird Party Advisory
- secunia.com/advisories/51133nvdThird Party AdvisoryVendor Advisory
- www.debian.org/security/2012/dsa-2575nvdThird Party Advisory
- www.openwall.com/lists/oss-security/2012/11/02/3nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2012/11/02/7nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/56372nvdThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/USN-1631-1nvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/79750nvdThird Party AdvisoryVDB Entry
- www.osvdb.org/86878nvdBroken Link
News mentions
0No linked articles in our index yet.