Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-18090

Опубликовано: 24 июл. 2026
Источник: redhat
CVSS3: 6.1
EPSS Низкий

Описание

A flaw was found in gdk-pixbuf. This vulnerability allows a remote attacker to cause a heap out-of-bounds read by providing a specially crafted Apple Icon Image (.icns) file. The uncompress() function, which handles RLE-encoded ICNS icon data, fails to validate the source buffer's boundaries during decompression. This can lead to a denial of service, where the application crashes, or to information disclosure, potentially revealing sensitive data from adjacent memory.

Отчет

This is a Low impact flaw as it requires a local attacker to provide a specially crafted ICNS file, leading to a denial of service or limited information disclosure. Exploitation necessitates user interaction to process the malicious file.

Меры по смягчению последствий

Do not open untrusted ICNS files from unknown sources. Disable ICNS image format support if not required.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10gdk-pixbuf2Under investigation
Red Hat Enterprise Linux 10glycin-loadersUnder investigation
Red Hat Enterprise Linux 10gnome-tourUnder investigation
Red Hat Enterprise Linux 10librsvg2Under investigation
Red Hat Enterprise Linux 10loupeUnder investigation
Red Hat Enterprise Linux 10papersUnder investigation
Red Hat Enterprise Linux 10snapshotUnder investigation
Red Hat Enterprise Linux 6gdk-pixbuf2Under investigation
Red Hat Enterprise Linux 7gdk-pixbuf2Under investigation
Red Hat Enterprise Linux 8cppcheckUnder investigation

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2517751gdk-pixbuf: gdk-pixbuf: heap out-of-bounds read in uncompress() via crafted ICNS RLE block

EPSS

Процентиль: 6%
0.00167
Низкий

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
ubuntu
12 дней назад

A flaw was found in gdk-pixbuf. This vulnerability allows a remote attacker to cause a heap out-of-bounds read by providing a specially crafted Apple Icon Image (.icns) file. The uncompress() function, which handles RLE-encoded ICNS icon data, fails to validate the source buffer's boundaries during decompression. This can lead to a denial of service, where the application crashes, or to information disclosure, potentially revealing sensitive data from adjacent memory.

CVSS3: 6.1
nvd
12 дней назад

A flaw was found in gdk-pixbuf. This vulnerability allows a remote attacker to cause a heap out-of-bounds read by providing a specially crafted Apple Icon Image (.icns) file. The uncompress() function, which handles RLE-encoded ICNS icon data, fails to validate the source buffer's boundaries during decompression. This can lead to a denial of service, where the application crashes, or to information disclosure, potentially revealing sensitive data from adjacent memory.

msrc
8 дней назад

Gdk-pixbuf: gdk-pixbuf: heap out-of-bounds read in uncompress() via crafted icns rle block

CVSS3: 6.1
debian
12 дней назад

A flaw was found in gdk-pixbuf. This vulnerability allows a remote att ...

CVSS3: 6.1
github
12 дней назад

A flaw was found in gdk-pixbuf. This vulnerability allows a remote attacker to cause a heap out-of-bounds read by providing a specially crafted Apple Icon Image (.icns) file. The uncompress() function, which handles RLE-encoded ICNS icon data, fails to validate the source buffer's boundaries during decompression. This can lead to a denial of service, where the application crashes, or to information disclosure, potentially revealing sensitive data from adjacent memory.

EPSS

Процентиль: 6%
0.00167
Низкий

6.1 Medium

CVSS3