CVE-2012-3481
Publication date 25 August 2012
Last updated 24 July 2024
Ubuntu priority
Integer overflow in the ReadImage function in plug-ins/common/file-gif-load.c in the GIF image format plug-in in GIMP 2.8.x and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted height and len properties in a GIF image file, which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.
Status
Package | Ubuntu Release | Status |
---|---|---|
gimp | 12.04 LTS precise |
Fixed 2.6.12-1ubuntu1.1
|
11.10 oneiric |
Fixed 2.6.11-2ubuntu4.1
|
|
11.04 natty |
Fixed 2.6.11-1ubuntu6.3
|
|
10.04 LTS lucid |
Fixed 2.6.8-2ubuntu1.5
|
|
8.04 LTS hardy | Ignored end of life |
Notes
References
Related Ubuntu Security Notices (USN)
- USN-1559-1
- GIMP vulnerabilities
- 10 September 2012