Integer overflow in the GnashImage::size method in libbase/GnashImage.h in GNU Gnash 0.8.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SWF file, which triggers a heap-based buffer overflow.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.036
                        
                    
                    
                        
                            EPSS Ranking 87.3%