pluskwa w imlibie

Andrzej Krzysztofowicz ankry w green.mif.pg.gda.pl
Pią, 22 Mar 2002, 10:31:00 CET


Czy ktos moze rozpoznawal ponizszy problem ?

> 3. Problem description:
> 
> Imlib versions prior to 1.9.13 would fall back to loading images
> via the NetPBM package, which has various problems that make it
> unsuitable for loading untrusted images. Imlib 1.9.13 also fixes
> various problems in arguments passed to malloc().
> 
> These problems may allow attackers to construct images that,
> when loaded by a viewer using Imlib, could cause crashes 
> or potentially the execution of arbitrary code.

-- 
=======================================================================
  Andrzej M. Krzysztofowicz               ankry w mif.pg.gda.pl
  phone (48)(58) 347 14 61
Faculty of Applied Phys. & Math.,   Technical University of Gdansk



Więcej informacji o liście dyskusyjnej pld-devel-pl