Comment 12 for bug 1982898

Revision history for this message
Pedro Ribeiro (pedrib) wrote :

Got it, thanks for the explanation.

At least we know the overwrite doesn't happen, which removes the potential security issue out of the equation.

To be honest I'm not completely convinced it was exploitable, but I'm not convinced it wasn't either, so better play it safe and patch it out. The side effects on other apps are unfortunate, but like you say, it's up to the apps to manage errors coming from gdk-pixbuf.