-------------------------------------------------------------------------- Debian Security Advisory DSA 337-1 security@debian.org http://www.debian.org/security/ Matt Zimmerman June 29th, 2003 http://www.debian.org/security/faq -------------------------------------------------------------------------- Package : gtksee Vulnerability : buffer overflow Problem-Type : local Debian-specific: no CVE Ids : CAN-2003-0444 Viliam Holub discovered a bug in gtksee whereby, when loading PNG images of certain color depths, gtksee would overflow a heap-allocated buffer. This vulnerability could be exploited by an attacker using a carefully constructed PNG image to execute arbitrary code when the victim loads the file in gtksee.
glsa sent