> I noticed that the following flaw in GDI+ affects many products:
> http://www.microsoft.com/technet/security/bulletin/MS04-028.mspx
>
> Of course MS does not list any third party products.  Anyone know
> whether Mozilla (specifically FireFox) is affected, in what version
> it's fixed, etc?

It's unlikely that other code is affected as well.  Why?  Older
Microsoft code seems to be fine, too -- and it's more likely that they
have moved away from the JPEG reference code than too it.

(This only refers to Mozilla on non-Windows platforms.  Mozilla on
Windows could still open exploitation vectors.)
_______________________________________________
Mozilla-security mailing list
[EMAIL PROTECTED]
http://mail.mozilla.org/listinfo/mozilla-security

Reply via email to