4.3
CVSSv2

CVE-2011-2485

Published: 03/07/2012 Updated: 03/07/2012
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The gdk_pixbuf__gif_image_load function in gdk-pixbuf/io-gif.c in gdk-pixbuf prior to 2.23.5 does not properly handle certain return values, which allows remote malicious users to cause a denial of service (memory consumption) via a crafted GIF image file.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome gdk-pixbuf

gnome gdk-pixbuf 2.22.1

Vendor Advisories

Debian Bug report logs - #631524 CVE-2011-2485: excessive memory use due improper checking of certain return values in GIF image loader Package: gdk-pixbuf; Maintainer for gdk-pixbuf is Debian GNOME Maintainers <pkg-gnome-maintainers@listsaliothdebianorg>; Reported by: Luciano Bello <luciano@debianorg> Date: Fri, ...