Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-19127

Опубликовано: 16 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-19127: gdk-pixbuf2 security update (IMPORTANT)

[2.42.12-5]

  • jpeg: Reject unsupported number of components

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

gdk-pixbuf2

2.42.12-4.el10_2.5

gdk-pixbuf2-devel

2.42.12-4.el10_2.5

gdk-pixbuf2-modules

2.42.12-4.el10_2.5

Oracle Linux x86_64

gdk-pixbuf2

2.42.12-4.el10_2.5

gdk-pixbuf2-devel

2.42.12-4.el10_2.5

gdk-pixbuf2-modules

2.42.12-4.el10_2.5

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail generation. Successful exploitation leads to application crashes and denial of service (DoS) conditions.

CVSS3: 7.5
redhat
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail generation. Successful exploitation leads to application crashes and denial of service (DoS) conditions.

CVSS3: 7.5
nvd
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail generation. Successful exploitation leads to application crashes and denial of service (DoS) conditions.

CVSS3: 7.5
msrc
4 месяца назад

Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image

CVSS3: 7.5
debian
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer ove ...