CVE-2017-6311: Null Pointer Dereference
Published Mar 10, 2017
·Updated
gdk-pixbuf-thumbnailer.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to printing an error message.
Affected Software
3 affected components
Gnome GDK-PixBuf<2.36.8
Fedoraproject Fedora=30
Fedoraproject Fedora=31
Remediation
Patch Available
Event History
Mar 10, 2017
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
via NVD·02:59 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-6311?
CVE-2017-6311 has been classified as a medium severity vulnerability due to its potential to cause denial of service through application crashes.
2
How do I fix CVE-2017-6311?
To fix CVE-2017-6311, update gdk-pixbuf to version 2.36.8 or later.
3
What type of attack does CVE-2017-6311 describe?
CVE-2017-6311 describes a context-dependent attack that leads to a NULL pointer dereference and application crash.
4
Which versions of gdk-pixbuf are affected by CVE-2017-6311?
CVE-2017-6311 affects gdk-pixbuf versions prior to 2.36.8.
5
What platforms are vulnerable to CVE-2017-6311?
CVE-2017-6311 affects gdk-pixbuf on GNOME and Fedora platforms, specifically Fedora versions 30 and 31.