Gnome

Gdk-pixbuf

19 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.65%
  • Published 24.07.2022 19:15:10
  • Last modified 21.11.2024 06:34:46

GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames in GIF files, as demonstrated by io-gif-animation.c composite_frame. This overflow is controllable and could be abused for code exe...

  • EPSS 0.79%
  • Published 28.05.2021 11:15:08
  • Last modified 12.02.2025 17:16:44

A flaw was found in gdk-pixbuf in versions before 2.42.0. An integer wraparound leading to an out of bounds write can occur when a crafted GIF image is loaded. An attacker may cause applications to crash or could potentially execute code on the victi...

  • EPSS 0.66%
  • Published 26.12.2020 02:15:12
  • Last modified 29.04.2025 13:13:41

GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw.c in the function write_indexes. if c->self_code equals 10, self->code_table[10].extends will assign the value 11 to c. The next execution in the loop wi...

Exploit
  • EPSS 0.99%
  • Published 12.11.2019 14:15:10
  • Last modified 21.11.2024 01:29:13

gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validation flaw

Exploit
  • EPSS 0.26%
  • Published 07.03.2019 23:29:00
  • Last modified 21.11.2024 03:09:30

GdkPixBuf (aka gdk-pixbuf), possibly 2.32.2, as used by GNOME Nautilus 3.14.3 on Ubuntu 16.04, allows attackers to cause a denial of service (stack corruption) or possibly have unspecified other impact via a crafted file folder.

  • EPSS 1.26%
  • Published 02.01.2018 20:29:00
  • Last modified 21.11.2024 03:04:42

Gnome gdk-pixbuf 2.36.8 and older is vulnerable to several integer overflow in the gif_get_lzw function resulting in memory corruption and potential code execution

Exploit
  • EPSS 3.13%
  • Published 05.09.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when compiled with Clang. A specially crafted tiff file can cause a heap-overflow resulting in remote code execution. An attacker can send...

Exploit
  • EPSS 8.95%
  • Published 05.09.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

An exploitable heap overflow vulnerability exists in the gdk_pixbuf__jpeg_image_load_increment functionality of Gdk-Pixbuf 2.36.6. A specially crafted jpeg file can cause a heap overflow resulting in remote code execution. An attacker can send a file...

Exploit
  • EPSS 0.33%
  • Published 10.03.2017 02:59:00
  • Last modified 20.04.2025 01:37:25

Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.

Exploit
  • EPSS 0.42%
  • Published 10.03.2017 02:59:00
  • Last modified 20.04.2025 01:37:25

The make_available_at_least function in io-tiff.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (infinite loop) via a large TIFF file.