Multiple array index errors in set.c in dvipng 1.11 and 1.12, and teTeX, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed DVI file.
References
Information
Published : 2010-05-07 11:24
Updated : 2017-09-18 18:30
NVD link : CVE-2010-0829
Mitre link : CVE-2010-0829
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
jan-ake_larsson
- dvipng
tug
- tetex