Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-59820

Опубликовано: 26 нояб. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 6.7

Описание

In KDE Krita before 5.2.13, loading a manipulated TGA file could result in a heap-based buffer overflow in plugins/impex/tga/kis_tga_import.cpp (aka KisTgaImport). Control flow proceeds even when a number of pixels becomes negative.

РелизСтатусПримечание
devel

not-affected

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

jammy

needs-triage

noble

needs-triage

plucky

ignored

end of life, was needs-triage
questing

not-affected

1:5.2.13+dfsg-1
upstream

released

1:5.2.13+dfsg-1

Показывать по

6.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.7
nvd
2 месяца назад

In KDE Krita before 5.2.13, loading a manipulated TGA file could result in a heap-based buffer overflow in plugins/impex/tga/kis_tga_import.cpp (aka KisTgaImport). Control flow proceeds even when a number of pixels becomes negative.

CVSS3: 6.7
debian
2 месяца назад

In KDE Krita before 5.2.13, loading a manipulated TGA file could resul ...

CVSS3: 6.7
github
2 месяца назад

In KDE Krita before 5.2.13, loading a manipulated TGA file could result in a heap-based buffer overflow in plugins/impex/tga/kis_tga_import.cpp (aka KisTgaImport). Control flow proceeds even when a number of pixels becomes negative.

6.7 Medium

CVSS3