Heap‑buffer‑overflow vulnerability in the JPEG and Base64 decoding paths of gdk‑pixbuf. The flaw occurs in gdk_pixbuf__jpeg_image_load_increment() (io‑jpeg.c:1193:26) when a specially crafted JPEG triggers a flow that leads to g_base64_encode_step() in glib (gbase64.c:141:16), reading beyond heap buffer bounds. Exploitation requires no authentication and could lead to application crash or arbitrary code execution via crafted images.
Fix: https://gitlab.gnome.org/GNOME/gdk-pixbuf/-/commit/4af78023ce7d3b5e3cec422a59bb4f48fa4f5886
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:12862 https://access.redhat.com/errata/RHSA-2025:12862
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:12841 https://access.redhat.com/errata/RHSA-2025:12841
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:13315 https://access.redhat.com/errata/RHSA-2025:13315
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:14575 https://access.redhat.com/errata/RHSA-2025:14575
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:14576 https://access.redhat.com/errata/RHSA-2025:14576
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:14574 https://access.redhat.com/errata/RHSA-2025:14574
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2025:14585 https://access.redhat.com/errata/RHSA-2025:14585
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2025:14618 https://access.redhat.com/errata/RHSA-2025:14618
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2025:14646 https://access.redhat.com/errata/RHSA-2025:14646
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2025:14647 https://access.redhat.com/errata/RHSA-2025:14647
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2025:14683 https://access.redhat.com/errata/RHSA-2025:14683