FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-10-07 15:55:27 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
3d4393b2-68a5-11f0-b2b4-589cfc10832agdk-pixbuf2 -- a heap buffer overflow

cve@mitre.org reports:

A flaw exists in gdk-pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can occur during Base64 encoding, allowing out-of-bounds reads from heap memory, potentially causing application crashes or arbitrary code execution.


Discovery 2025-07-24
Entry 2025-07-24
gdk-pixbuf2
< 2.42.12_2

CVE-2025-7345
https://www.cve.org/CVERecord?id=CVE-2025-7345
9272a5b0-6b40-11e5-bd7f-bcaec565249cgdk-pixbuf2 -- head overflow and DoS

reports:

We found a heap overflow and a DoS in the gdk-pixbuf implementation triggered by the scaling of tga file.

We found a heap overflow in the gdk-pixbuf implementation triggered by the scaling of gif file.


Discovery 2015-10-02
Entry 2015-10-05
gdk-pixbuf2
< 2.32.1

CVE-2015-7673
CVE-2015-7674
https://mail.gnome.org/archives/ftp-release-list/2015-September/msg00201.html
https://mail.gnome.org/archives/ftp-release-list/2015-September/msg00287.html
http://www.openwall.com/lists/oss-security/2015/10/02/9
http://www.openwall.com/lists/oss-security/2015/10/02/10