CVE-2017-6312
- EPSS 0.31%
- Published 10.03.2017 02:59:00
- Last modified 20.04.2025 01:37:25
Integer overflow in io-ico.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (segmentation fault and application crash) via a crafted image entry offset in an ICO file, which triggers an out-of-bounds read, related to co...
CVE-2017-6311
- EPSS 1.05%
- Published 10.03.2017 02:59:00
- Last modified 20.04.2025 01:37:25
gdk-pixbuf-thumbnailer.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to printing an error message.
CVE-2016-6352
- EPSS 1.57%
- Published 03.10.2016 18:59:08
- Last modified 12.04.2025 10:46:40
The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file.
CVE-2015-8875
- EPSS 1.14%
- Published 01.06.2016 22:59:00
- Last modified 12.04.2025 10:46:40
Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops.c in gdk-pixbuf before 2.33.1 allow remote attackers to cause a denial of service (application crash...
CVE-2015-7674
- EPSS 1.63%
- Published 26.10.2015 17:59:11
- Last modified 12.04.2025 10:46:40
Integer overflow in the pixops_scale_nearest function in pixops/pixops.c in gdk-pixbuf before 2.32.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted GIF image file, which trig...
CVE-2015-7673
- EPSS 1.39%
- Published 26.10.2015 17:59:09
- Last modified 12.04.2025 10:46:40
io-tga.c in gdk-pixbuf before 2.32.0 uses heap memory after its allocation failed, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) and possibly execute arbitrary code via a crafted Truevis...
CVE-2015-4491
- EPSS 8.08%
- Published 16.08.2015 01:59:19
- Last modified 12.04.2025 10:46:40
Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, as used in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 on Linux, Google Chrome on Linux, and other products, allows remote attackers t...
- EPSS 2.27%
- Published 13.08.2012 20:55:03
- Last modified 11.04.2025 00:51:21
Multiple integer overflows in the read_bitmap_file_data function in io-xbm.c in gdk-pixbuf before 2.26.1 allow remote attackers to cause a denial of service (application crash) via a negative (1) height or (2) width in an XBM file, which triggers a h...
CVE-2011-2485
- EPSS 0.71%
- Published 03.07.2012 16:40:29
- Last modified 11.04.2025 00:51:21
The gdk_pixbuf__gif_image_load function in gdk-pixbuf/io-gif.c in gdk-pixbuf before 2.23.5 does not properly handle certain return values, which allows remote attackers to cause a denial of service (memory consumption) via a crafted GIF image file.