CVE-2021-46829

GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames in GIF files, as demonstrated by io-gif-animation.c composite_frame. This overflow is controllable and could be abused for code execution, especially on 32-bit systems.
Configurations

Configuration 1

cpe:2.3:a:gnome:gdk-pixbuf:*:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

Information

Published : 2022-07-24 07:15

Updated : 2022-10-27 01:30


NVD link : CVE-2021-46829

Mitre link : CVE-2021-46829

Products Affected
No products.
CWE