CVE-2015-4491

Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, as used in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 on Linux, Google Chrome on Linux, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via crafted bitmap dimensions that are mishandled during scaling.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mozillaCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
VendorProductVersion
gnomegdk-pixbuf
𝑥
≤ 2.31.4
oraclesolaris
11.3
canonicalubuntu_linux
12.04
canonicalubuntu_linux
14.04
canonicalubuntu_linux
15.04
opensuseopensuse
13.1
opensuseopensuse
13.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
gdk-pixbuf
bullseye
2.42.2+dfsg-1+deb11u2
fixed
bullseye (security)
2.42.2+dfsg-1+deb11u1
fixed
bookworm
2.42.10+dfsg-1+deb12u1
fixed
sid
2.42.12+dfsg-1
fixed
trixie
2.42.12+dfsg-1
fixed
gtk+2.0
bullseye
2.24.33-2+deb11u1
fixed
bookworm
2.24.33-2+deb12u1
fixed
sid
2.24.33-6
fixed
trixie
2.24.33-6
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firefox
vivid
Fixed 40.0+build4-0ubuntu0.15.04.1
released
trusty
Fixed 40.0+build4-0ubuntu0.14.04.1
released
precise
Fixed 40.0+build4-0ubuntu0.12.04.1
released
gdk-pixbuf
vivid
Fixed 2.31.3-1ubuntu0.1
released
trusty
Fixed 2.30.7-0ubuntu1.1
released
precise
Fixed 2.26.1-1ubuntu1.2
released
thunderbird
vivid
Fixed 1:38.2.0+build1-0ubuntu0.15.04.1
released
trusty
Fixed 1:38.2.0+build1-0ubuntu0.14.04.1
released
precise
Fixed 1:38.2.0+build1-0ubuntu0.12.04.2
released
Common Weakness Enumeration
References