CVE-2013-7447: Integer Overflow
Integer overflow in the gdkcairosetsourcepixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (crash) via a large image file, which triggers a large memory allocation.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2013-7447?
CVE-2013-7447 has a moderate severity level as it can cause a denial of service by crashing applications handling large image files.
How do I fix CVE-2013-7447?
To fix CVE-2013-7447, it is recommended to update GTK+ to version 3.9.8 or later.
Which applications are affected by CVE-2013-7447?
CVE-2013-7447 affects applications including eom, gnome-photos, eog, gambas3, thunar, and pinpoint.
What platforms are vulnerable to CVE-2013-7447?
Vulnerable platforms include Ubuntu Linux versions 12.04, 14.04, and 15.10.
Can CVE-2013-7447 be exploited remotely?
Yes, CVE-2013-7447 can be exploited remotely through the use of specially crafted large image files.