First published: Tue Aug 11 2015(Updated: )
Security researcher Gustavo Grieco reported a heap overflow in gdk-pixbuf affecting Linux systems using Gnome. This issue is triggered by the scaling of a malformed bitmap format image and results in a potentially exploitable crash. This issue only affects Linux systems running Gnome. Windows and OS X operating systems are unaffected. External Reference: <a href="https://www.mozilla.org/security/announce/2015/mfsa2015-88.html">https://www.mozilla.org/security/announce/2015/mfsa2015-88.html</a> Acknowledgements: Red Hat would like to thank the Mozilla project for reporting this issue. Upstream acknowledges Gustavo Grieco as the original reporter.
Affected Software | Affected Version | How to fix |
---|---|---|
gdk-pixbuf |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1252290 is considered high due to the potential for heap overflow and exploitation.
To fix REDHAT-BUG-1252290, you should update the gdk-pixbuf library to the latest version as provided by your Linux distribution.
REDHAT-BUG-1252290 affects Linux systems that are running the Gnome desktop environment utilizing gdk-pixbuf.
The issue in REDHAT-BUG-1252290 is caused by a heap overflow triggered by the scaling of a malformed bitmap format image.
Yes, REDHAT-BUG-1252290 can lead to potentially exploitable crashes due to the heap overflow vulnerability.