Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the readpgm function in pnm.c for GOCR 0.40, when it is not using netpbm, allows remote attackers to execute arbitrary code via a P3 format PNM file with more data than implied by its width and height values.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GOCR pnm.c堆缓冲区溢出漏洞
Vulnerability Description
GOCR 是一个运行在命令行下的OCR软件,不需要图形界面,可以被Kooka和Xsane等软件调用。 用于GOCR 0.40的pnm.c中的readpgm函数存在堆缓冲区溢出,在不使用netpbm时,远程攻击者可以通过一个P3格式的PNM文件且该文件带有超过其宽度和高度值所暗示的量的更多数据,来执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A