In Linux, manufacturers are eager to patch high-risk image vulnerabilities.

Source: Internet
Author: User
[Saidi Net News] a high-risk vulnerability related to images appeared in Linux, making Linux vendors busy patching.

This vulnerability occurs in gdkpixbuf, which can cause DoS attacks or provide remote system access.

Vulnerabilities can be divided into several types. One of them is a variant of the previously discovered QT vulnerability, which exists in bitmap images and can run in an endless loop. The second is "pixbuf_create_from_xpm ()", which occurs when the XPM image is decoded. The third is the boundary error of the "xpm_extract_color ()" function, which occurs when the XPM image is decoded and can also cause buffer overflow. The last one is the input validation error during ICO image decoding, which can cause integer overflow.

According to the secunia consulting report, there is no official version of gdkpixbuf. However, Red Hat, Debian, fedora, and MandrakeSoft have released their respective patches and upgraded versions.

From: SCID

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.