Gimp before 2.8.22 allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, a similar issue to CVE-2007-2237.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Gimp | Gimp | * | 2.8.22 (excluding) |
| Gimp | Ubuntu | dapper | * |
| Gimp | Ubuntu | devel | * |
| Gimp | Ubuntu | edgy | * |
| Gimp | Ubuntu | feisty | * |