Unrated severityNVD Advisory· Published Dec 18, 2012· Updated Apr 29, 2026
CVE-2012-5576
CVE-2012-5576
Description
Multiple stack-based buffer overflows in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.8.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large (1) red, (2) green, or (3) blue color mask in an XWD file.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- git.gnome.org/browse/gimp/commit/nvdPatchVendor Advisory
- www.ubuntu.com/usn/USN-1659-1nvdPatchThird Party Advisory
- bugzilla.gnome.org/show_bug.cginvdExploitIssue TrackingPatchThird Party Advisory
- lists.opensuse.org/opensuse-updates/2012-12/msg00017.htmlnvdThird Party Advisory
- lists.opensuse.org/opensuse-updates/2013-01/msg00014.htmlnvdThird Party Advisory
- www.openwall.com/lists/oss-security/2012/11/27/1nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/56647nvdThird Party AdvisoryVDB Entry
- secunia.com/advisories/50296nvdBroken Link
- secunia.com/advisories/51479nvdBroken Link
- secunia.com/advisories/51528nvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
News mentions
0No linked articles in our index yet.