LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-5201 - Vulnerability Analysis

HighCVSS: 7.5

Last Updated: April 1, 2026

gdk-pixbuf - Denial of Service

Published: March 31, 2026Updated: April 1, 2026PoC AvailableRemote Exploitable

Overview

gdk-pixbuf contains a heap-based buffer overflow caused by improper validation of color component counts in the JPEG image loader, letting remote attackers cause denial of service via specially crafted JPEG images, exploit requires no user interaction.

Severity & Score

Severity: High
CVSS Score: 7.5
EPSS Score: 8.9%(Probability of exploitation in next 30 days)

Impact

Remote attackers can cause application crashes and denial of service by processing crafted JPEG images.

Mitigation

Update to the latest version of gdk-pixbuf.

Social Media Activity(2 posts)

TheHackerWire
TheHackerWire
@thehackerwire
Mar 31, 2026

🟠 CVE-2026-5201 - High (7.5) A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can ex... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-5201/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 31, 2026

🟠 CVE-2026-5201 - High (7.5) A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can ex... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-5201/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-5201
Severity
High
CVSS Score
7.5
Type
buffer_overflow
Status
unconfirmed
EPSS
8.9%
Social Posts
2

CWE

  • CWE-122

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Score

8.9%Probability of exploitation in the next 30 days