io-tga.c in gdk-pixbuf before 2.32.0 uses heap memory after its allocation failed, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) and possibly execute arbitrary code via a crafted Truevision TGA (TARGA) file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-10-26T17:00:00

Updated: 2024-08-06T07:58:59.775Z

Reserved: 2015-10-02T00:00:00

Link: CVE-2015-7673

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-10-26T17:59:09.173

Modified: 2018-10-30T16:27:35.843

Link: CVE-2015-7673

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-10-01T00:00:00Z

Links: CVE-2015-7673 - Bugzilla