Description
The GdkPixbufLoader function in GIMP ToolKit (GTK+) in GTK 2 (gtk2) before 2.4.13 allows context-dependent attackers to cause a denial of service (crash) via a malformed image file.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Lubomir Kundrak · textdoslinux
https://www.exploit-db.com/exploits/29520
References (19)
Core 19
Core References
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/23984
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/24095
Broken Link, Vendor Advisory vendor-advisory
x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2007-0019.html
Broken Link x_refsource_confirm
https://issues.rpath.com/browse/RPL-984
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/23933
Broken Link, Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1017552
Broken Link vdb-entry
x_refsource_osvdb
http://osvdb.org/31621
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/24006
Third Party Advisory vendor-advisory
x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-415-1
Broken Link vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2007/0331
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/24010
Broken Link vendor-advisory
x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_02_sr.html
Tool Signature vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10325
Broken Link, Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/22209
Issue Tracking, Vendor Advisory x_refsource_confirm
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=218932
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/23935
Third Party Advisory vendor-advisory
x_refsource_debian
https://www.debian.org/security/2007/dsa-1256
Broken Link third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/23884
Broken Link vendor-advisory
x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2007:039
Scores
EPSS
0.0093
EPSS Percentile
76.3%
Details
Status
published
Products (1)
gnome/gtk
< 2.4.13
Published
Jan 24, 2007
Tracked Since
Feb 18, 2026