pluskwa w imlibie
Andrzej Krzysztofowicz
ankry w green.mif.pg.gda.pl
Pią, 22 Mar 2002, 10:31:00 CET
Czy ktos moze rozpoznawal ponizszy problem ?
> 3. Problem description:
>
> Imlib versions prior to 1.9.13 would fall back to loading images
> via the NetPBM package, which has various problems that make it
> unsuitable for loading untrusted images. Imlib 1.9.13 also fixes
> various problems in arguments passed to malloc().
>
> These problems may allow attackers to construct images that,
> when loaded by a viewer using Imlib, could cause crashes
> or potentially the execution of arbitrary code.
--
=======================================================================
Andrzej M. Krzysztofowicz ankry w mif.pg.gda.pl
phone (48)(58) 347 14 61
Faculty of Applied Phys. & Math., Technical University of Gdansk
Więcej informacji o liście dyskusyjnej pld-devel-pl