CVE-2013-7447 PUBLISHED

Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (crash) via a large image file, which triggers a large memory allocation.

EPSS 3.85% · 88.1th percentile

Risk Scores

EPSS Score
3.85%
88.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSgnome-photos3.18.1-1build1, 3.18.1-1, 3.16.2-1
Ubuntu:18.04:LTSpinpoint0, 1:0.1.8-3
Ubuntu:14.04:LTSgtk+2.02.24.23-0ubuntu1.1, 2.24.23-0ubuntu1.3, 2.24.23-0ubuntu1.2
Ubuntu:24.04:LTSpinpoint1:0.1.8-6build1, 0, 1:0.1.8-6
Ubuntu:25.10pinpoint1:0.1.8-6build2, 0
Ubuntu:20.04:LTSpinpoint1:0.1.8-4, 0
Ubuntu:25.10gambas30, 3.20.2-1build2, 3.20.2-1build1
Ubuntu:22.04:LTSpinpoint1:0.1.8-4, 0, 1:0.1.8-5
Ubuntu:16.04:LTSgambas33.8.4-2ubuntu1, 3.5.4-2ubuntu11, 3.8.4-2ubuntu3.1
Ubuntu:16.04:LTSeog3.18.0-1ubuntu1, 0, 3.16.3-1ubuntu2
Ubuntu:16.04:LTSthunar1.6.11-0ubuntu0.16.04.1, 1.6.11-0ubuntu0.16.04.2, 0
Ubuntu:24.04:LTSgambas30, 3.18.3-1ubuntu1, 3.18.3-1ubuntu2
Ubuntu:20.04:LTSgambas33.14.3-2ubuntu1, 3.14.3-2ubuntu3.1, 3.14.3-2ubuntu3
Ubuntu:16.04:LTSpinpoint0, 1:0.1.8-2, 1:0.1.8-1ubuntu2
Ubuntu:22.04:LTSgambas33.16.3-2, 3.16.3-2build1, 3.16.3-3
Ubuntu:14.04:LTSeog0, 3.10.2-0ubuntu5, 3.10.2-0ubuntu1

Timeline

References

Open in Interactive Console →