Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 4 min 136 bronnen 3 kritiek 43 vandaag
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2025-6199

LOW · 3.3 CVSS Gepubliceerd: CWE-200

Beschrijving

A flaw was found in the GIF parser of GdkPixbuf’s LZW decoder. When an invalid symbol is encountered during decompression, the decoder sets the reported output size to the full buffer length rather than the actual number of written bytes. This logic error results in uninitialized sections of the buffer being included in the output, potentially leaking arbitrary memory contents in the processed image.

Vendors

Gnome Redhat

Affected products

Gdkpixbuf Enterprise Linux

References