CVE-2003-0444 describes a heap-based buffer overflow vulnerability in GTKSee versions 0.5 and 0.5.1, which could allow remote attackers to execute arbitrary code by crafting a malicious PNG image with specific color depths. With a CVSS score of 7.5, this vulnerability is considered highly severe, requiring no authentication and low attack complexity, potentially leading to partial confidentiality, integrity, and availability compromise. While no active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB) is currently known, and community discussion and media coverage are minimal, the potential for remote code execution warrants attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
0.5CPE matchmatch criteria | cpe:2.3:a:gtksee:gtksee:0.5:*:*:*:*:*:*:* | ||
0.5.1CPE matchmatch criteria | cpe:2.3:a:gtksee:gtksee:0.5.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.