Double Free Vulnerability in GTK 2 Affects Multiple Linux Distributions
CVE-2005-0891

7.5HIGH

Key Information:

Vendor

Gnome

Status
Vendor
CVE Published:
2 May 2005

What is CVE-2005-0891?

A double free vulnerability exists in GTK 2 prior to version 2.2.4 that allows remote attackers to execute a denial of service attack. By crafting a malicious BMP image, an attacker can exploit this flaw, leading to crashes of applications utilizing the GTK 2 library. This vulnerability affects multiple Linux distributions, making it critical for users to upgrade to the latest version to ensure system stability.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.