GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames in GIF files, as demonstrated by io-gif-animation.c composite_frame. This overflow is controllable and could be abused for code execution, especially on 32-bit systems.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-07-24T18:47:35
Updated: 2024-08-04T05:17:42.630Z
Reserved: 2022-07-24T00:00:00
Link: CVE-2021-46829
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-24T19:15:10.097
Modified: 2023-11-07T03:40:05.017
Link: CVE-2021-46829
Redhat