Description
Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.
Remediation
References
Related Vulnerabilities
MongoDb Double Free Vulnerability (CVE-2026-4358)
PostgreSQL Other Vulnerability (CVE-2013-1902)
WordPress Plugin Gallery Plugin for WordPress-Envira Photo Gallery Cross-Site Scripting (1.7.6)
MySQL CVE-2017-3634 Vulnerability (CVE-2017-3634)
WordPress Plugin WP Favorite Posts Cross-Site Scripting (1.6.5)