REDHAT-BUG-2547986: Buffer Overflow
A heap buffer overflow vulnerability was found in Eye of GNOME (eog) in the PNG metadata reader component (eog-metadata-reader-png). The flaw exists in the handling of cHRM and gAMA chunk resume state during PNG file parsing. An attacker could exploit this by crafting a malicious PNG file that, when opened by a victim, triggers the overflow, potentially leading to arbitrary code execution or a denial of service.
Upstream issue: https://gitlab.gnome.org/GNOME/eog/-/issues/342
Affected Software
Event History
Frequently Asked Questions
Who is exposed to this issue?
Users or systems that open attacker-controlled PNG files with Eye of GNOME are exposed. Exploitation requires a victim to open a crafted PNG file.
What could exploitation allow?
A crafted PNG can trigger a heap buffer overflow in the PNG metadata reader while parsing cHRM and gAMA chunk resume state. The stated impacts are denial of service or potential arbitrary code execution.