Zum Hauptinhalt springen
Echtzeit-Radar & Feeds
Alle RSS Feeds ➔
👥 Community & Social
Sichere ProgrammierungHow to Stop Your Android App from Draining the Battery with Wake Locks(01.10.2026 um 16:15 Uhr)
•
Sichere ProgrammierungBuild and Publish a Full-Stack Mobile App with AI(01.10.2026 um 17:13 Uhr)
•••
Sichere Programmierungpwd in rust(02.10.2026 um 07:29 Uhr)
•••
Sichere ProgrammierungNobody Withholds For You: Working Out Your Own Freelance Tax Set-Aside(02.10.2026 um 07:30 Uhr)
•
Sichere ProgrammierungWhy Traditional Webhooks Break Under RPM Load(02.10.2026 um 07:32 Uhr)
•
Sichere ProgrammierungOracle Manipulation Risk Report: Rocket Pool(02.10.2026 um 07:34 Uhr)
•
Sichere ProgrammierungHow to Stop Your Android App from Draining the Battery with Wake Locks(01.10.2026 um 16:15 Uhr)
•
Sichere ProgrammierungBuild and Publish a Full-Stack Mobile App with AI(01.10.2026 um 17:13 Uhr)
•••
Sichere Programmierungpwd in rust(02.10.2026 um 07:29 Uhr)
•••
Sichere ProgrammierungNobody Withholds For You: Working Out Your Own Freelance Tax Set-Aside(02.10.2026 um 07:30 Uhr)
•
Sichere ProgrammierungWhy Traditional Webhooks Break Under RPM Load(02.10.2026 um 07:32 Uhr)
•
Sichere ProgrammierungOracle Manipulation Risk Report: Rocket Pool(02.10.2026 um 07:34 Uhr)
•
Intelligence View
⚡ tsecurity.de Intelligence

USN-3069-1: Eye of GNOME vulnerability

Ubuntu Security Notice USN-3069-1 25th August, 2016 eog vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS…

Beitrag
0
Seite
0
↗ Quelle (ubuntu.com)
Social ReaktionenReagiere als Erste:r — dein Feedback zählt!

Ubuntu Security Notice USN-3069-1


25th August, 2016


eog vulnerability


A security issue affects these releases of Ubuntu and its
derivatives:


  • Ubuntu 16.04 LTS


  • Ubuntu 14.04 LTS


  • Ubuntu 12.04 LTS


Summary


Eye of GNOME could be made to crash or run programs as your login if it
opened a specially crafted image.





Software description


  • eog
    - Eye of GNOME graphics viewer program








Details


It was discovered that Eye of GNOME incorrectly handled certain invalid
UTF-8 strings. If a user were tricked into opening a specially-crafted
image, a remote attacker could use this issue to cause Eye of GNOME to
crash, resulting in a denial of service, or possibly execute arbitrary
code.



Update instructions


The problem can be corrected by updating your system to the following
package version:


Ubuntu 16.04 LTS:




eog

3.18.2-1ubuntu2.1





Ubuntu 14.04 LTS:




eog

3.10.2-0ubuntu5.2





Ubuntu 12.04 LTS:




eog

3.4.2-0ubuntu1.3





To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.


In general, a standard system update will make all the necessary changes.





References




CVE-2016-6855


Cyber Threat Intelligence & Forensik

Bedrohungsgraph · ATT&CK-Mapping · Exploit-Belege
IoC Intelligence
1 Indikatoren · Defanged · STIX 2.1
CVE-2016-6855
CTI Threat Relationship Graph
Akteure · Techniken · Beziehungen
3 Knoten · 2 Relationen
CVE / Incident Threat Actor Software MITRE ATT&CK CWE Weakness IoC
Exploit & Remediation Lifecycle
PoC · Ausnutzung · Patch-Stufen
CVE-2016-6855
Entdeckung & Meldung
Schwachstelle identifiziert & registriert
Sicherheits-Advisory
Offizielle Warnung & CVE-Zuweisung
Exploit / PoC
Öffentlicher Nachweis/Code verfügbar (Exploit-DB/EUVD)
In-the-Wild Ausnutzung
Keine Massenausnutzung gemeldet
Patch & Schutzmaßnahmen
Noch kein offizieller Patch dokumentiert
Exploit Weaponization & PoC Radar
Nur belegte Faktoren · kein Score-Theater
HIGH EXPLOITABLE · Index 40/100
Exploit-DB
EDB-40291
Interaktion
Interaktion nötig
Authentifizierung
Erforderlich

Compliance, SLA & Vendor Adherence

Advisory-Prüfung · Score-Einordnung · Fristen
Advisory Radar

Hersteller-Sicherheitsmeldungen & Patch-Status

Workaround & Virtual-Patching empfohlen
Handlungsempfehlung für Administratoren

Öffentliche PoCs existieren. Isolieren Sie das System oder wenden Sie Micro-Segmentierungsregeln an, bis offizielle Patches vorliegen.

Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
1 öffentliche Exploit-Referenz(en) detektiert (Exploit Database (EDB)).
PoC einsehen
💬 Kommentare werden geladen…
Ähnliche Beiträge
🔍 Verwandte News

Ähnliche Beiträge zu USN-3069-1: Eye of GNOME vulnerability

Thematisch verwandte Begriffe: USN30691, GNOME, vulnerability · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
tsecurity.de Icon
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag