MEDIUM
security flaw
Published Jul 6, 2006
5.1
MEDIUMCVSS 2.0
EPSS 4.61%
Description
Buffer overflow in the xcf_load_vector function in app/xcf/xcf-load.c for gimp before 2.2.12 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via an XCF file with a large num_axes value in the VECTORS property.
Affected products
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
5.1 MEDIUM NVD
AV:N/AC:H/Au:N/C:P/I:P/A:P
Access Vector Network
Access Complexity High
Authentication None
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
4.61% 0.04614
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
EPSS probability 0.04614
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (9 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 4.61% (0.04614) | 91.40th | v5 (v2026.06.15) |
| Jun 15, 2026 | 5.04% (0.05044) | 91.16th | v5 (v2026.06.15) |
| Mar 17, 2025 | 1.78% (0.01777) | 81.45th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.98% (0.00984) | 84.14th | v3 (v2023.03.01) |
| Jan 16, 2024 | 0.98% (0.00984) | 81.78th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.80% (0.00797) | 78.94th | v3 (v2023.03.01) |
| Mar 6, 2023 | 4.23% (0.04229) | 87.47th | v2 (v2022.01.01) |
| Apr 1, 2022 | 4.23% (0.04229) | 86.19th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.23% (0.04229) | 69.94th | v2 (v2022.01.01) |
Weaknesses (1)
References (35)
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=377049 x_refsource_MISCThird Party Advisory
- http://bugzilla.gnome.org/show_bug.cgi?id=346742 x_refsource_CONFIRMIssue TrackingThird Party Advisory
- http://secunia.com/advisories/20976 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/20979 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/21069 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/21104 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/21170 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/21182 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/21198 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/21459 third-party-advisoryx_refsource_SECUNIABroken Link
- http://secunia.com/advisories/23044 third-party-advisoryx_refsource_SECUNIABroken Link
- http://security.gentoo.org/glsa/glsa-200607-08.xml vendor-advisoryx_refsource_GENTOOThird Party Advisory
- http://securitytracker.com/id?1016527 vdb-entryx_refsource_SECTRACKBroken LinkThird Party AdvisoryVDB Entry
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-102720-1 vendor-advisoryx_refsource_SUNALERTBroken Link
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-200070-1 vendor-advisoryx_refsource_SUNALERTBroken Link
- http://www.debian.org/security/2006/dsa-1116 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:127 vendor-advisoryx_refsource_MANDRIVABroken Link
- http://www.novell.com/linux/security/advisories/2006_19_sr.html vendor-advisoryx_refsource_SUSEBroken Link
- http://www.osvdb.org/27037 vdb-entryx_refsource_OSVDBBroken Link
- http://www.redhat.com/support/errata/RHSA-2006-0598.html vendor-advisoryx_refsource_REDHATBroken Link
- http://www.securityfocus.com/archive/1/440987/100/0/threaded mailing-listx_refsource_BUGTRAQBroken LinkThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/441012/100/0/threaded mailing-listx_refsource_BUGTRAQBroken LinkThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/441030/100/0/threaded mailing-listx_refsource_BUGTRAQBroken LinkThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/18877 vdb-entryx_refsource_BIDBroken LinkPatchThird Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/usn-312-1 vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- http://www.vupen.com/english/advisories/2006/2703 vdb-entryx_refsource_VUPENBroken Link
- http://www.vupen.com/english/advisories/2006/4634 vdb-entryx_refsource_VUPENBroken Link
- https://access.redhat.com/security/cve/CVE-2006-3404 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1618141 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27687 vdb-entryx_refsource_XFThird Party AdvisoryVDB Entry
- https://issues.rpath.com/browse/RPL-522 x_refsource_CONFIRMBroken Link
- https://nvd.nist.gov/vuln/detail/CVE-2006-3404
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11259 vdb-entrysignaturex_refsource_OVALTool Signature
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5908 vdb-entrysignaturex_refsource_OVALTool Signature
- https://www.cve.org/CVERecord?id=CVE-2006-3404
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 6, 2006
Updated Aug 7, 2024
Reserved Jul 6, 2006
Link CVE-2006-3404
CISA Vulnrichment
Updated n/a