CVE-2011-2485

gdk-pixbuf < 2.23.5 - Denial of Service via Crafted GIF Image Handling

Title source: llm
STIX 2.1

Description

The gdk_pixbuf__gif_image_load function in gdk-pixbuf/io-gif.c in gdk-pixbuf before 2.23.5 does not properly handle certain return values, which allows remote attackers to cause a denial of service (memory consumption) via a crafted GIF image file.

References (5)

Core 5
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/45656
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/49715
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-201206-20.xml

Scores

EPSS 0.0068
EPSS Percentile 71.8%

Details

Status published
Products (2)
gnome/gdk-pixbuf 2.22.1
gnome/gdk-pixbuf < 2.23.3
Published Jul 03, 2012
Tracked Since Feb 18, 2026