CVE-2011-2485
gdk-pixbuf < 2.23.5 - Denial of Service via Crafted GIF Image Handling
Title source: llmDescription
The gdk_pixbuf__gif_image_load function in gdk-pixbuf/io-gif.c in gdk-pixbuf before 2.23.5 does not properly handle certain return values, which allows remote attackers to cause a denial of service (memory consumption) via a crafted GIF image file.
References (5)
Core 5
Core References
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/45656
Exploit, Patch x_refsource_confirm
http://git.gnome.org/browse/gdk-pixbuf/commit/?id=f8569bb13e2aa1584dde61ca545144750f7a7c98
Various Sources x_refsource_confirm
http://ftp.gnome.org/pub/GNOME/sources/gdk-pixbuf/2.23/gdk-pixbuf-2.23.5.news
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/49715
Third Party Advisory vendor-advisory
x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-201206-20.xml
Scores
EPSS
0.0068
EPSS Percentile
71.8%
Details
Status
published
Products (2)
gnome/gdk-pixbuf
2.22.1
gnome/gdk-pixbuf
< 2.23.3
Published
Jul 03, 2012
Tracked Since
Feb 18, 2026