CVE-2015-7552Improper Restriction of Operations within the Bounds of a Memory Buffer in Opensuse

Severity
7.8HIGHNVD
EPSS
1.7%
top 17.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 18
Latest updateSep 4

Description

Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale.c in gdk-pixbuf 2.30.x allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted BMP file.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

Debiangnome/gdk-pixbuf< 2.32.0-1+3
Ubuntugnome/gdk-pixbuf< 2.30.7-0ubuntu1.6+1
Palo Altopaloalto/pan-os

🔴Vulnerability Details

4
GHSA
GHSA-cj35-69m2-vfwm: Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale2022-05-14
OSV
gdk-pixbuf vulnerabilities2016-09-21
CVEList
CVE-2015-7552: Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale2016-04-18
OSV
CVE-2015-7552: Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale2016-04-18

📋Vendor Advisories

4
Palo Alto
PAN-SA-2024-0008 Informational Bulletin: Impact of OSS CVEs in PAN-OS2024-09-04
Ubuntu
GDK-PixBuf vulnerabilities2016-09-21
Red Hat
gdk-pixbuf: Heap-based buffer overflow in the gdk_pixbuf_flip function2016-01-25
Debian
CVE-2015-7552: gdk-pixbuf - Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale.c...2015

💬Community

4
Bugzilla
CVE-2015-7552 mingw-gdk-pixbuf: gdk-pixbuf: Heap-based buffer overflow in the gdk_pixbuf_flip function [fedora-all]2016-09-23
Bugzilla
CVE-2015-7552 gdk-pixbuf2: gdk-pixbuf: Heap-based buffer overflow in the gdk_pixbuf_flip function [fedora-all]2016-09-23
Bugzilla
CVE-2015-7552 mingw-gdk-pixbuf: gdk-pixbuf: Heap-based buffer overflow in the gdk_pixbuf_flip function [epel-7]2016-09-23
Bugzilla
CVE-2015-7552 gdk-pixbuf: Heap-based buffer overflow in the gdk_pixbuf_flip function2016-09-23
CVE-2015-7552 — Opensuse vulnerability | cvebase