gdk-pixbuf2-2.42.6-6.el9_6
エラータID: AXSA:2025-10711:01
The gdk-pixbuf2 packages provide an image loading library that can be extended by loadable modules for new image formats. It is used by toolkits such as GTK+ or clutter.
Security Fix(es):
* gdk?pixbuf: Heap?buffer?overflow in gdk?pixbuf (CVE-2025-7345)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2025-7345
A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can occur during Base64 encoding, allowing out-of-bounds reads from heap memory, potentially causing application crashes or arbitrary code execution.
Update packages.
A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can occur during Base64 encoding, allowing out-of-bounds reads from heap memory, potentially causing application crashes or arbitrary code execution.
N/A
SRPMS
- gdk-pixbuf2-2.42.6-6.el9_6.src.rpm
MD5: d8c4785c8fc74f340e5faabd926e2b4e
SHA-256: 5550e4769bcdb8be29c1bb7a065f7d82bd1941a8a55bb009e34cc021fe809a37
Size: 7.38 MB
Asianux Server 9 for x86_64
- gdk-pixbuf2-2.42.6-6.el9_6.i686.rpm
MD5: fa51b3ae3135064c07b76b4c1d0b8447
SHA-256: c40a3b3e93c93ca272e60d909edfa6b86dcef144daf089c39b7e67b70cd84237
Size: 499.70 kB - gdk-pixbuf2-2.42.6-6.el9_6.x86_64.rpm
MD5: 916e8606931d11abf9b5329acaed0b4c
SHA-256: e5e7cf817b981ff7c92832048a6220be24d77b829c0e5a8958b169c323d20f7f
Size: 492.00 kB - gdk-pixbuf2-devel-2.42.6-6.el9_6.i686.rpm
MD5: f23c0f8fd234e33af8d2f5fee3f6794a
SHA-256: ee5d91fcb7d6b3edc843a24e05e59d04886b52309ca91816559a93dd2fd8ded9
Size: 68.83 kB - gdk-pixbuf2-devel-2.42.6-6.el9_6.x86_64.rpm
MD5: 8c249039f62292e1e8508ccb58d5d24b
SHA-256: 45e8198b43cabe198a1977e43fe64a657724edd489be3e8cff7a9de31e476045
Size: 68.45 kB - gdk-pixbuf2-modules-2.42.6-6.el9_6.i686.rpm
MD5: 21514bccbcf8739ecf1e776f43f2def3
SHA-256: bd928d102d07e2ce10a07c92262a7d53b14c4658ea944f6b22f7a4091fd32ce2
Size: 89.76 kB - gdk-pixbuf2-modules-2.42.6-6.el9_6.x86_64.rpm
MD5: efe5c5d246ebaf06014909b51d69dbcc
SHA-256: abc6eb059f3fd35be3ef20ab27ffbd1cc480061fd8f76f7087e4ae0eedd18f3c
Size: 84.39 kB