CVE-2025-7345Patch

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can occur during Base64 encoding, allowing out-of-bounds reads from heap memory, potentially causing application crashes or arbitrary code execution.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-01: 1Patch / Workaround · 2026-05-01: 105-01
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
Full discourse1 post
  • Joel B.D.@darkshram
    Patch

    Disponibles nuevos paquetes de gdk-pixbuf2 para ALDOS, corrigiendo CVE-2026-5201 y CVE-2025-7345 vía @darkshram https://www.alcancelibre.org/noticias/disponibles-nuevos-paquetes-de-gdk-pixbuf2-para-aldos-corrigiendo-cve-2026-5201-y-cve-2025-7345

    Post summary

    The announcement shares that new ALDOS packages are available to patch CVE‑2026‑5201 and CVE‑2025‑7345 via @darkshram.

    000001.0K
    1.0K followersView on X

Explore more