Name | CVE-2005-0891 |
Description | Double free vulnerability in gtk 2 (gtk2) before 2.2.4 allows remote attackers to cause a denial of service (crash) via a crafted BMP image. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more) |
NVD severity | medium |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
gdk-pixbuf (PTS) | stretch (security), stretch | 2.36.5-2+deb9u2 | fixed |
buster | 2.38.1+dfsg-1 | fixed | |
bullseye, sid | 2.42.2+dfsg-1 | fixed | |
gtk+2.0 (PTS) | stretch | 2.24.31-2 | fixed |
buster | 2.24.32-3 | fixed | |
bullseye, sid | 2.24.33-1 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
gdk-pixbuf | source | (unstable) | 0.22.0-7.1 | |||
gtk+2.0 | source | (unstable) | 2.6.4-1 |
The description is wrong; 2.6 is affected as well