Gnome

Gdkpixbuf

11 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Published 17.06.2025 14:30:42
  • Last modified 21.08.2025 01:16:43

A flaw was found in the GIF parser of GdkPixbuf’s LZW decoder. When an invalid symbol is encountered during decompression, the decoder sets the reported output size to the full buffer length rather than the actual number of written bytes. This logic ...

Exploit
  • EPSS 0.08%
  • Published 26.01.2024 09:15:07
  • Last modified 21.11.2024 07:33:37

In GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory corruption (in ani_load_chunk in io-ani.c) when parsing chunks in a crafted .ani file. A crafted file could allow an attacker to ove...

Exploit
  • EPSS 0.2%
  • Published 12.01.2022 13:15:07
  • Last modified 21.11.2024 06:31:18

GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12.

  • EPSS 11.89%
  • Published 18.11.2005 06:03:00
  • Last modified 03.04.2025 01:03:51

io-xpm.c in the gdk-pixbuf XPM image rendering library in GTK+ before 2.8.7 allows attackers to cause a denial of service (infinite loop) via a crafted XPM image with a large number of colors.

  • EPSS 1.72%
  • Published 18.11.2005 06:03:00
  • Last modified 03.04.2025 01:03:51

Integer overflow in io-xpm.c in gdk-pixbuf 0.22.0 in GTK+ before 2.8.7 allows attackers to cause a denial of service (crash) or execute arbitrary code via an XPM file with large height, width, and colour values, a different vulnerability than CVE-200...

  • EPSS 2.22%
  • Published 18.11.2005 06:03:00
  • Last modified 03.04.2025 01:03:51

Integer overflow in the GTK+ gdk-pixbuf XPM image rendering library in GTK+ 2.4.0 allows attackers to execute arbitrary code via an XPM file with a number of colors that causes insufficient memory to be allocated, which leads to a heap-based buffer o...

  • EPSS 12.04%
  • Published 20.10.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

The BMP image processor for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted BMP file.

  • EPSS 30.05%
  • Published 20.10.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute arbitrary code via certain n_col and cpp values that enable a heap-based ...

  • EPSS 30.6%
  • Published 20.10.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, may allow remote attackers to execute arbitrary code via a certain color string. NOTE: this identifie...

  • EPSS 12.93%
  • Published 20.10.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Integer overflow in the ICO image decoder for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of service (application crash) via a crafted ICO file.