CVE-2007-1667

Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagick, allow user-assisted remote attackers to cause a denial of service (crash) or obtain sensitive information via crafted images with large or negative values that trigger a buffer overflow.

Date published : 2007-03-24

http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html

http://www.securityfocus.com/bid/23300