USN-3085-1: GDK-PixBuf vulnerabilities
USN-3085-1: GDK-PixBuf vulnerabilities Ubuntu Security Notice USN-3085-1 21st September, 2016 gdk-pixbuf vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary GDK-PixBuf could be made to crash or run programs as your login if it opened a specially crafted file. Software description gdk-pixbuf – GDK-Pixbuf library Details It was discovered that the GDK-PixBuf library did not properly handle speciallycrafted bmp images, leading to a heap-based buffer overflow. If a user orautomated system were tricked into opening a specially crafted bmp file, aremote attacker could use this flaw to cause GDK-PixBuf to crash, resultingin a denial of service, or possibly execute arbitrary code. This issue onlyaffected Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. (CVE-2015-7552) It was discovered that the GDK-PixBuf library contained an integer overflowwhen handling certain images. If [ more… ]