CVE Vulnerabilities

CVE-2013-7447

Published: Feb 17, 2016 | Modified: Apr 12, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (crash) via a large image file, which triggers a large memory allocation.

Affected Software

NameVendorStart VersionEnd Version
Ubuntu_linuxCanonical12.04 (including)12.04 (including)
Ubuntu_linuxCanonical14.04 (including)14.04 (including)
Ubuntu_linuxCanonical15.10 (including)15.10 (including)
EogUbuntuartful*
EogUbuntubionic*
EogUbuntucosmic*
EogUbuntudevel*
EogUbuntudisco*
EogUbuntueoan*
EogUbuntuesm-infra/bionic*
EogUbuntuesm-infra/focal*
EogUbuntuesm-infra/xenial*
EogUbuntufocal*
EogUbuntugroovy*
EogUbuntuhirsute*
EogUbuntuimpish*
EogUbuntujammy*
EogUbuntukinetic*
EogUbuntulunar*
EogUbuntumantic*
EogUbuntunoble*
EogUbuntuoracular*
EogUbuntuplucky*
EogUbuntuprecise*
EogUbuntuquesting*
EogUbuntutrusty*
EogUbuntuwily*
EogUbuntuxenial*
EogUbuntuyakkety*
EogUbuntuzesty*
EomUbuntuartful*
EomUbuntuwily*
EomUbuntuyakkety*
EomUbuntuzesty*
Gambas3Ubuntuartful*
Gambas3Ubuntudisco*
Gambas3Ubuntueoan*
Gambas3Ubuntuesm-apps/xenial*
Gambas3Ubuntufocal*
Gambas3Ubuntugroovy*
Gambas3Ubuntuhirsute*
Gambas3Ubuntuimpish*
Gambas3Ubuntukinetic*
Gambas3Ubuntulunar*
Gambas3Ubuntumantic*
Gambas3Ubuntuoracular*
Gambas3Ubuntuplucky*
Gambas3Ubuntutrusty*
Gambas3Ubuntuwily*
Gambas3Ubuntuxenial*
Gambas3Ubuntuyakkety*
Gambas3Ubuntuzesty*
Gnome-photosUbuntuartful*
Gnome-photosUbuntuesm-apps/xenial*
Gnome-photosUbuntutrusty*
Gnome-photosUbuntuwily*
Gnome-photosUbuntuxenial*
Gnome-photosUbuntuyakkety*
Gnome-photosUbuntuzesty*
Gtk+2.0Ubuntuprecise*
Gtk+2.0Ubuntutrusty*
Gtk+2.0Ubuntuvivid/stable-phone-overlay*
Gtk+2.0Ubuntuwily*
Gtk+3.0Ubuntuprecise*
Gtk+3.0Ubuntuupstream*
PinpointUbuntuartful*
PinpointUbuntubionic*
PinpointUbuntucosmic*
PinpointUbuntudisco*
PinpointUbuntueoan*
PinpointUbuntuesm-apps/bionic*
PinpointUbuntuesm-apps/focal*
PinpointUbuntuesm-apps/jammy*
PinpointUbuntuesm-apps/noble*
PinpointUbuntuesm-apps/xenial*
PinpointUbuntufocal*
PinpointUbuntugroovy*
PinpointUbuntuhirsute*
PinpointUbuntuimpish*
PinpointUbuntujammy*
PinpointUbuntukinetic*
PinpointUbuntulunar*
PinpointUbuntumantic*
PinpointUbuntunoble*
PinpointUbuntuoracular*
PinpointUbuntuplucky*
PinpointUbuntuprecise*
PinpointUbuntuquesting*
PinpointUbuntutrusty*
PinpointUbuntuwily*
PinpointUbuntuxenial*
PinpointUbuntuyakkety*
PinpointUbuntuzesty*
ThunarUbuntuartful*
ThunarUbuntuesm-apps/xenial*
ThunarUbuntuprecise*
ThunarUbuntutrusty*
ThunarUbuntuwily*
ThunarUbuntuxenial*
ThunarUbuntuyakkety*
ThunarUbuntuzesty*

References