Changes between Initial Version and Version 2 of Ticket #8285


Ignore:
Timestamp:
09/10/2016 07:19:48 PM (9 years ago)
Author:
Douglas R. Reno
Comment:

Modified description to point out CVE.

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #8285

    • Property Summary gtk+-2.24.31gtk+2-2.24.31
    • Property Owner changed from blfs-book@… to Douglas R. Reno
    • Property Priority normalhigh
    • Property Status newassigned
  • TabularUnified Ticket #8285 – Description

    initial v2  
    3131 769126 Can't type astral plane characters into a GtkEntry using the Windo...
    3232}}}
     33
     34
     35... and the same CVE issued for EOG in 2013 is apparently exploitable here.
     36
     37CVE-2013-7447
     38
     39{{{
     40Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (crash) via a large image file, which triggers a large memory allocation.
     41}}}