An issue was discovered in gThumb through 3.6.2. There is a double-free vulnerability in the add_themes_from_dir method in dlg-contact-sheet.c because of two successive calls of g_free, each of which frees the same buffer.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gthumb | Gnome | * | 3.6.2 (including) |
Gthumb | Ubuntu | bionic | * |
Gthumb | Ubuntu | cosmic | * |
Gthumb | Ubuntu | esm-apps/bionic | * |
Gthumb | Ubuntu | esm-apps/xenial | * |
Gthumb | Ubuntu | trusty | * |
Gthumb | Ubuntu | upstream | * |
Gthumb | Ubuntu | xenial | * |