CVE-2016-6352 PUBLISHED

The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file.

EPSS 1.56% · 81.3th percentile

Risk Scores

EPSS Score
1.56%
81.3th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSgdk-pixbuf0, 2.32.1-1, 2.32.2-1
Ubuntu:14.04:LTSgdk-pixbuf2.30.2-0ubuntu1, 2.30.2-0ubuntu2, 2.30.3-0ubuntu1

Timeline

References

Open in Interactive Console →