Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "2.36.12"
},
{
"introduced": "0"
},
{
"last_affected": "31"
}
]
}