Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: rsnapshot

Found 1 matching suggestions

created 4 months, 3 weeks ago
Gdk-pixbuf: uninitialized memory disclosure in gdkpixbuf gif lzw decoder

A flaw was found in the GIF parser of GdkPixbuf’s LZW decoder. When an invalid symbol is encountered during decompression, the decoder sets the reported output size to the full buffer length rather than the actual number of written bytes. This logic error results in uninitialized sections of the buffer being included in the output, potentially leaking arbitrary memory contents in the processed image.

Affected products

loupe
librsvg2
snapshot
gdk-pixbuf
  • <2.43.2
gdk-pixbuf2
glycin-loaders

Matching in nixpkgs

pkgs.loupe

Simple image viewer application written with GTK4 and Rust

  • nixos-unstable -

pkgs.snapshot

Take pictures and videos on your computer, tablet, or phone

  • nixos-unstable -

pkgs.rsnapshot

Filesystem snapshot utility for making backups of local and remote systems

  • nixos-unstable -

pkgs.aj-snapshot

Tool for storing/restoring JACK and/or ALSA connections to/from cml files

  • nixos-unstable -

pkgs.nix-snapshotter

Brings native understanding of Nix packages to containerd

  • nixos-unstable -

pkgs.zfs-prune-snapshots

Remove snapshots from one or more zpools that match given criteria

  • nixos-unstable -

pkgs.python312Packages.torchsnapshot

Performant, memory-efficient checkpointing library for PyTorch applications, designed with large, complex distributed workloads in mind

  • nixos-unstable -

pkgs.python313Packages.torchsnapshot

Performant, memory-efficient checkpointing library for PyTorch applications, designed with large, complex distributed workloads in mind

  • nixos-unstable -