CVE-2010-1513
EPSS 3.3%
Description
Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows.
How to fix CVE-2010-1513
To remediate CVE-2010-1513, upgrade the affected package to a fixed version below.
- Debian/ziproxy—upgrade to 3.1.0-1 or later
Is CVE-2010-1513 being exploited?
Low — EPSS is 3.3%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 3.1.0-1