8.8
CVSSv3

CVE-2021-44648

Published: 12/01/2022 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnome gdkpixbuf 2.42.6

fedoraproject fedora 34

fedoraproject fedora 35

debian debian linux 11.0

Vendor Advisories

Synopsis Moderate: gdk-pixbuf2 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for gdk-pixbuf2 is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as hav ...
Debian Bug report logs - #1014600 gdk-pixbuf: CVE-2021-44648 Package: src:gdk-pixbuf; Maintainer for src:gdk-pixbuf is Debian GNOME Maintainers <pkg-gnome-maintainers@listsaliothdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Fri, 8 Jul 2022 14:36:01 UTC Severity: important Tags: security, upst ...
Several vulnerabilities were discovered in gdk-pixbuf, the GDK Pixbuf library CVE-2021-44648 Sahil Dhar reported a heap-based buffer overflow vulnerability when decoding the lzw compressed stream of image data, which may result in the execution of arbitrary code or denial of service if a malformed GIF image is processed CVE-2021- ...
GNOME gdk-pixbuf 2426 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12 ...