VYPR
High severity7.8NVD Advisory· Published Mar 16, 2020· Updated Jun 17, 2026

CVE-2019-20326

CVE-2019-20326

Description

A heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in GNOME gThumb before 3.8.3 and Linux Mint Pix before 2.4.5 allows attackers to cause a crash and potentially execute arbitrary code via a crafted JPEG file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:gnome:gthumb:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:gnome:gthumb:*:*:*:*:*:*:*:*range: <3.8.3
    • (no CPE)range: <3.8.3
  • cpe:2.3:a:linuxmint:pix:*:*:*:*:*:*:*:*
    Range: <2.4.5
  • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
  • GNOME/gThumbdescription
  • Linux/Pixllm-create
    Range: <2.4.5

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.