Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31871
HistoryAug 30, 2021 - 6:37 a.m.

Denial Of Service (DoS)

2021-08-3006:37:56
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
gthumb
stretch
denial of service
jpeg
buffer overflow
arbitrary code
vulnerability
linux mint pix

EPSS

0.007

Percentile

79.7%

gthumb:stretch is vulnerable to denial of service. A heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in GNOME gThumb and Linux Mint Pix allows attackers to cause a crash and potentially execute arbitrary code via a crafted JPEG file.