Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale.c in gdk-pixbuf 2.30.x allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted BMP file.
https://bugzilla.suse.com/show_bug.cgi?id=958963
http://www.ubuntu.com/usn/USN-3085-1
http://www.debian.org/security/2016/dsa-3589
http://lists.opensuse.org/opensuse-updates/2016-06/msg00006.html
http://lists.opensuse.org/opensuse-updates/2016-03/msg00124.html