Skip to main content

Vendor/product archive

gnome / gdkpixbuf CVEs

Beta · best-effort

11 CVEs tagged to gnome / gdkpixbuf0 Critical, 7 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2025-6199

Published Jun 17, 2025

A flaw was found in the GIF parser of GdkPixbuf’s LZW decoder. When an invalid symbol is encountered during decompression, the decoder sets the reported output size to the full bu…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-48622

Published Jan 26, 2024

In GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory corruption (in ani_load_chunk in io-ani.c) when parsing chunk…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2975

Published Nov 18, 2005

io-xpm.c in the gdk-pixbuf XPM image rendering library in GTK+ before 2.8.7 allows attackers to cause a denial of service (infinite loop) via a crafted XPM image with a large numb…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2976

Published Nov 18, 2005

Integer overflow in io-xpm.c in gdk-pixbuf 0.22.0 in GTK+ before 2.8.7 allows attackers to cause a denial of service (crash) or execute arbitrary code via an XPM file with large h…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-3186

Published Nov 18, 2005

Integer overflow in the GTK+ gdk-pixbuf XPM image rendering library in GTK+ 2.4.0 allows attackers to execute arbitrary code via an XPM file with a number of colors that causes in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0753

Published Oct 20, 2004

The BMP image processor for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted BMP file.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0782

Published Oct 20, 2004

Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute ar…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0783

Published Oct 20, 2004

Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, may allow remote attackers to e…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0788

Published Oct 20, 2004

Integer overflow in the ICO image decoder for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of service (application crash) via a c…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1