Vulnerabilities in Gnome
57 resultsVexday analysis
O Gnome apresenta um perfil de risco baixo com apenas 3 vulnerabilidades registradas na base, nenhuma sob ataque ativo ou classificada como crítica. O risco não é recente, sem publicações nos últimos 90 dias, e a fraqueza dominante (CWE-754: Improper Exception Handling) sugere problemas pontuais de tratamento de erros sem padrão de exploração ativa.
CVE-2025-49795HIGHLibxml: null pointer dereference leads to denial of service (dos)EPSS 0.6%CVE-2025-14512MEDIUMGlib: integer overflow in glib gio attribute escaping causes heap buffer overflowEPSS 0.6%CVE-2026-18358HIGHGnome-remote-desktop: gnome-remote-desktop system-mode rdp server missing connection throttling allows unauthenticated denial of serviceEPSS 0.5%CVE-2020-37011HIGHGnome Fonts Viewer 3.34.0 Heap CorruptionEPSS 0.5%CVE-2025-12105HIGHLibsoup: heap use-after-free in libsoup message queue handling during http/2 read completionEPSS 0.5%CVE-2026-84269MEDIUMGvfs: afp: heap-based buffer overflow in dsi read pathEPSS 0.5%CVE-2025-7425HIGHLibxslt: libxml2: heap use-after-free in libxslt caused by atype corruption in xmlattrptrEPSS 0.4%CVE-2017-12164MEDIUMA flaw was discovered in gdm 3.24.1 where gdm greeter was no longer setting the ran_once boolean during autologin. If autologin was enabled EPSS 0.4%CVE-2026-84267MEDIUMGvfs: sftp: uninitialized heap disclosure in read_string()EPSS 0.4%CVE-2026-66758HIGHGimp: integer overflow in file-fits plugin causes a heap-based buffer overflow on crafted fits imagesEPSS 0.4%CVE-2026-6653HIGHlibxml2: Use after free in xmlParseInternalSubset via improper entity resolution handlingEPSS 0.4%CVE-2026-18487MEDIUMEpiphany: address bar / host spoofing via userinfo in ephy_uri_get_decoded_host()EPSS 0.3%CVE-2026-66759HIGHGimp: out-of-bounds read in file-icns plugin causes information disclosure or crash on crafted icns imagesEPSS 0.3%CVE-2026-2604MEDIUMEvolution-data-server: evolution data server: arbitrary file deletion via inconsistent uri handlingEPSS 0.3%CVE-2026-78465HIGHGimp: integer overflow in pcx loader (planes=4) leads to heap overflow on 32-bitEPSS 0.3%CVE-2026-82324MEDIUMGimp: heap out-of-bounds reads in iff/ilbm loader from ham row size mismatch and nplanes=0EPSS 0.3%CVE-2026-79902MEDIUMGimp: stack vla size underflow denial of service in seattleEPSS 0.3%CVE-2026-82343MEDIUMGimp: heap out-of-bounds read and stack out-of-bounds access in psd loader from channel-count handlingEPSS 0.3%CVE-2026-78475MEDIUMGimp: unbounded stack vla and 21-byte stack over-read in pix (esm) loaderEPSS 0.3%CVE-2026-82330MEDIUMGimp: heap out-of-bounds read in pvr vq (compressed) decoder due to missing bounds checkEPSS 0.3%