GIMP 'fit' File Format Denial of Service Vulnerability
BID:54246
Info
GIMP 'fit' File Format Denial of Service Vulnerability
| Bugtraq ID: | 54246 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2012-3236 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 29 2012 12:00AM |
| Updated: | Apr 09 2013 12:18PM |
| Credit: | Joseph Sheridan |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 SuSE openSUSE 12.1 SuSE openSUSE 11.4 GIMP GIMP 2.6.7 GIMP GIMP 2.6.6 GIMP GIMP 2.4.6 GIMP GIMP 2.3.14 GIMP GIMP 2.3.10 GIMP GIMP 2.3.9 GIMP GIMP 2.2.17 GIMP GIMP 2.2.16 GIMP GIMP 2.2.15 GIMP GIMP 2.2.14 GIMP GIMP 2.2.12 GIMP GIMP 2.2.11 GIMP GIMP 2.2.8 GIMP GIMP 2.2.6 GIMP GIMP 2.2.4 GIMP GIMP 1.2.5 GIMP GIMP 2.8.0 GIMP GIMP 2.6.12 GIMP GIMP 2.6.11 GIMP GIMP 2.6.11 |
| Not Vulnerable: | |
Discussion
GIMP 'fit' File Format Denial of Service Vulnerability
GIMP is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause the application to crash, resulting in a denial-of-service condition.
GIMP 2.8.0 and prior are vulnerable.
GIMP is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause the application to crash, resulting in a denial-of-service condition.
GIMP 2.8.0 and prior are vulnerable.
Exploit / POC
GIMP 'fit' File Format Denial of Service Vulnerability
An exploit code is available. Please see the references for more information.
An exploit code is available. Please see the references for more information.
Solution / Fix
GIMP 'fit' File Format Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.