Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-8875

Опубликовано: 01 июн. 2016
Источник: nvd
CVSS3: 7.8
CVSS2: 6.8
EPSS Низкий

Описание

Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops.c in gdk-pixbuf before 2.33.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image, which triggers a heap-based buffer overflow.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnome:gdk-pixbuf:*:*:*:*:*:*:*:*
Версия до 2.33 (включая)
Конфигурация 2
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00598
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-189

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 9 лет назад

Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops.c in gdk-pixbuf before 2.33.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image, which triggers a heap-based buffer overflow.

redhat
больше 10 лет назад

Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops.c in gdk-pixbuf before 2.33.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image, which triggers a heap-based buffer overflow.

CVSS3: 7.8
debian
больше 9 лет назад

Multiple integer overflows in the (1) pixops_composite_nearest, (2) pi ...

CVSS3: 7.8
github
больше 3 лет назад

Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops.c in gdk-pixbuf before 2.33.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image, which triggers a heap-based buffer overflow.

EPSS

Процентиль: 69%
0.00598
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-189