You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa gdk-pixbuf

Sigurnosni nedostatak programskog paketa gdk-pixbuf

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-3912-1
March 20, 2019

gdk-pixbuf vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 16.04 LTS

Summary:

GDK-PixBuf could be made to crash or run programs as your login if it
opened a specially crafted file.

Software Description:
– gdk-pixbuf: GDK Pixbuf library

Details:

It was discovered that the GDK-PixBuf library did not properly handle
certain BMP images. If an user or automated system were tricked into
opening a specially crafted BMP file, a remote attacker could use this flaw
to cause GDK-PixBuf to crash, resulting in a denial of service, or possibly
execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS:
libgdk-pixbuf2.0-0 2.32.2-1ubuntu1.6

After a standard system update you need to restart your session to make
all the necessary changes.

References:
https://usn.ubuntu.com/usn/usn-3912-1
CVE-2017-12447

Package Information:
https://launchpad.net/ubuntu/+source/gdk-pixbuf/2.32.2-1ubuntu1.6

—–BEGIN PGP SIGNATURE—–
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=THDJ
—–END PGP SIGNATURE—–

AutorFilip Karamatic
Cert idNCERT-REF-2019-03-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostatak programske biblioteke SDL

Otkriven je sigurnosni nedostatak programske biblioteke SDL za operacijski sustav Fedora. Otkriveni nedostatak potencijalnim napadačima omogućuje izvršavanje proizvoljnog programskog koda....

Close