CVE-2015-7673 PUBLISHED

io-tga.c in gdk-pixbuf before 2.32.0 uses heap memory after its allocation failed, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) and possibly execute arbitrary code via a crafted Truevision TGA (TARGA) file.

EPSS 2.37% · 84.8th percentile

Risk Scores

EPSS Score
2.37%
84.8th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSgdk-pixbuf0, 2.28.1-1ubuntu2, 2.30.0-0ubuntu2

Timeline

References

Open in Interactive Console →