Slashdot Mirror


GdkPixbuf Suffers Image Decoding Vulnerabilities

DNAspark99 writes "It seems Multiple vulnerabilities have been reported in GdkPixbuf, which can be exploited by malicious people to DoS (Denial of Service), and potentially compromise a vulnerable system. Personally, I wasn't concerned about this until I ran 'ldd firefox-bin | grep libgdk_pixbuf'" There's no official patch yet, but the article notes several Linux vendors have issued updates. Worth keeping an eye for those who use libgdk_pixbuf under other Unix-style operating systems as well.

4 of 291 comments (clear)

  1. That's okay... by rackhamh · · Score: 0, Troll

    ... we can still blame Bill Gates:

    Source: dictionary.com

    bmp

    Microsoft Windows bitmap format.
    Bmp files may use run-length encoding. :P

  2. FC2 fixed already? by erroneus · · Score: 0, Troll

    I just ran UP2DATE yesterday on that pixbuf package. I think it would be too coincidental that it came out just before the announcement. I think FC2 already has the fix out maybe?

    Now if they'd get the new Mozilla package out there!

  3. Security by Anonymous Coward · · Score: 0, Troll

    Mac OS X > *

  4. Re:What the hell by evslin · · Score: 0, Troll

    Now it seems this is universal, or at the very least universal outside the macintosh world.

    I fail to see the difference!

    /ducks