REDHAT-BUG-1576175: Buffer Overflow
There is a stack-based buffer over-read in calling GLib in the function gxpsimagesguesscontenttype of gxps-images.c in libgxps through 0.3.0 because it does not reject negative return values from a ginputstreamread call. A crafted input will lead to a remote denial of service attack.
Original bug:
https://bugzilla.redhat.com/showbug.cgi?id=1575188
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1576175?
The severity of REDHAT-BUG-1576175 is classified as a denial of service vulnerability.
How do I fix REDHAT-BUG-1576175?
To fix REDHAT-BUG-1576175, update libgxps to a version higher than 0.3.0.
What causes REDHAT-BUG-1576175?
REHAT-BUG-1576175 is caused by a stack-based buffer over-read in the gxps_images_guess_content_type function of libgxps.
Who is affected by REDHAT-BUG-1576175?
Users of GNOME libgxps version 0.3.0 and below are affected by REDHAT-BUG-1576175.
What happens if REDHAT-BUG-1576175 is exploited?
If REDHAT-BUG-1576175 is exploited, it can lead to a remote denial of service attack.