Ukuba sengozini kulabhulali ye-Pixman esetshenziselwa ukunikeza kumaphrojekthi amaningi omthombo ovulekile

Ukukhishwa okulungisayo komtapo wezincwadi we-Pixman 0.42.2 kushicilelwe, okusetshenziselwa ukunikezwa kwezithombe ezisezingeni eliphansi kumaphrojekthi amaningi omthombo ovulekile, okuhlanganisa i-X.Org, Cairo, Firefox, kanye nabaphathi abayinhlanganisela ngokusekelwe kuphrothokholi ye-Wayland. Inguqulo entsha ilungisa ukuba sengozini okuyingozi (CVE-2022-44638) okuholela ekuchichimeni kwebhafa lapho kucutshungulwa idatha ye-pixel namapharamitha aholela ekuchichimeni okuphelele.

Abacwaningi bashicilele i-prototype exploit ebonisa ukuthi kungenzeka ukubhala okulawulwayo kwedatha ngaphandle kwebhafa eyabelwe. Ukusetshenziswa kokuba sengozini ukuhlela ukwenziwa kwekhodi yomhlaseli akukhishwa ngaphandle. Ungakwazi ukulandelela ukushicilelwa kokulungiswa ngokusatshalaliswa kulawa makhasi: Debian, RHEL, Fedora, SUSE, Ubuntu, Arch Linux, OpenBSD, FreeBSD, NetBSD.

Source: opennet.ru

Engeza amazwana