>> NASA BigView "PPM::ppmHeader()" Buffer Overflow Vulnerability
Title : NASA BigView "PPM::ppmHeader()" Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2008-1745 CVE ID : CVE-2008-2542 CWE ID : CWE-119
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-06-05
Technical Description
A vulnerability has been identified in NASA BigView, which could be exploited by attackers to compromise a vulnerable system. This issue is caused by a buffer overflow error in the "PPM::ppmHeader()" function when calling "getline()" while processing PPM files with an overly long header, which could be exploited by attackers to crash an affected application or execute arbitrary code via a malicious file.