CVE-2005-0654: Medium severity GIMP vulnerability
Published Mar 7, 2005
·Updated
gifload.exe in GIMP 2.0.5, 2.2.3, and possibly 2.2.4 allows remote attackers or local users to cause a denial of service (application crash) via the image descriptor (1) height or (2) width fields set to zero.
Affected Software
3 affected components
GIMP=2.0.5
GIMP=2.2.3
GIMP=2.2.4
Event History
Mar 7, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0654?
CVE-2005-0654 has a severity rating that indicates it can cause a denial of service by crashing the application.
2
How do I fix CVE-2005-0654?
To fix CVE-2005-0654, update GIMP to a version higher than 2.2.4 or apply relevant security patches if available.
3
Which versions of GIMP are affected by CVE-2005-0654?
CVE-2005-0654 affects GIMP versions 2.0.5, 2.2.3, and possibly 2.2.4.
4
Can CVE-2005-0654 be exploited remotely?
Yes, CVE-2005-0654 can be exploited remotely by attackers through specially crafted image files.
5
What type of attack does CVE-2005-0654 facilitate?
CVE-2005-0654 facilitates a denial of service attack that leads to application crashes.