CVE-2001-0775
xli - buffer overflow, input sanitising, integer overflow
EPSS 25.6%
Description
Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field.
How to fix CVE-2001-0775
To remediate CVE-2001-0775, upgrade the affected package to a fixed version below.
- Debian/xli—upgrade to 1.17.0-17 or later
- Debian/xli—upgrade to 1.17.0-11woody1 or later
Is CVE-2001-0775 being exploited?
Moderate — EPSS is 25.6%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 1.17.0-17
- from 0, < 1.17.0-11woody1