Back to search
CVE-2012-2370
Published: Aug 13, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Multiple integer overflows in the read_bitmap_file_data function in io-xbm.c in gdk-pixbuf before 2.26.1 allow remote attackers to cause a denial of service (application crash) via a negative (1) height or (2) width in an XBM file, which triggers a heap-based buffer overflow.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
GLSA-201206-20
vendor-advisory
x_refsource_GENTOO
RHSA-2013:0135
vendor-advisory
x_refsource_REDHAT
https://bugs.launchpad.net/ubuntu/+source/gdk-pixbuf/+bug/681150
x_refsource_MISC
49125
third-party-advisory
x_refsource_SECUNIA
gdkpixbuf-readbitmapfiledata-bo(75578)
vdb-entry
x_refsource_XF
[oss-security] 20120515 Re: CVE Request: gdk-pixbuf Integer overflow in XBM file loader
mailing-list
x_refsource_MLIST
49715
third-party-advisory
x_refsource_SECUNIA
53548
vdb-entry
x_refsource_BID
[oss-security] 20120515 CVE Request: gdk-pixbuf Integer overflow in XBM file loader
mailing-list
x_refsource_MLIST
http://git.gnome.org/browse/gdk-pixbuf/
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now