Double free vulnerability in gtk 2 (gtk2) before 2.2.4 allows remote attackers to cause a denial of service (crash) via a crafted BMP image.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gtk | Gnome | 2.0.0 (including) | 2.2.4 (excluding) |
Red Hat Enterprise Linux 3 | RedHat | gdk-pixbuf-1:0.22.0-12.el3 | * |
Red Hat Enterprise Linux 3 | RedHat | gtk2-0:2.2.4-15 | * |
Red Hat Enterprise Linux 4 | RedHat | gdk-pixbuf-1:0.22.0-16.el4 | * |
Red Hat Enterprise Linux 4 | RedHat | gtk2-0:2.4.13-14 | * |
Gdk-pixbuf | Ubuntu | dapper | * |
Gdk-pixbuf | Ubuntu | devel | * |
Gdk-pixbuf | Ubuntu | edgy | * |
Gdk-pixbuf | Ubuntu | feisty | * |
Gtk+2.0 | Ubuntu | dapper | * |
Gtk+2.0 | Ubuntu | devel | * |
Gtk+2.0 | Ubuntu | edgy | * |
Gtk+2.0 | Ubuntu | feisty | * |