Gimp before 2.8.22 allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, a similar issue to CVE-2007-2237.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gimp | Gimp | * | 2.8.22 (excluding) |
Gimp | Ubuntu | dapper | * |
Gimp | Ubuntu | devel | * |
Gimp | Ubuntu | edgy | * |
Gimp | Ubuntu | feisty | * |