Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-5201

Опубликовано: 31 мар. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail generation. Successful exploitation leads to application crashes and denial of service (DoS) conditions.

РелизСтатусПримечание
devel

not-affected

2.44.5+dfsg-4ubuntu1
esm-infra-legacy/xenial

released

2.32.2-1ubuntu1.6+esm3
esm-infra/bionic

released

2.36.11-2ubuntu0.1~esm3
esm-infra/focal

released

2.40.0+dfsg-3ubuntu0.5+esm3
esm-infra/xenial

ignored

end of ESM support, was needs-triage
jammy

released

2.42.8+dfsg-1ubuntu0.5
noble

released

2.42.10+dfsg-3ubuntu3.3
questing

released

2.42.12+dfsg-5ubuntu0.1
resolute

not-affected

2.44.5+dfsg-4ubuntu1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 61%
0.01069
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail generation. Successful exploitation leads to application crashes and denial of service (DoS) conditions.

CVSS3: 7.5
nvd
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail generation. Successful exploitation leads to application crashes and denial of service (DoS) conditions.

CVSS3: 7.5
msrc
4 месяца назад

Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image

CVSS3: 7.5
debian
4 месяца назад

A flaw was found in the gdk-pixbuf library. This heap-based buffer ove ...

suse-cvrf
4 месяца назад

Security update for gdk-pixbuf

EPSS

Процентиль: 61%
0.01069
Низкий

7.5 High

CVSS3