The vulnerability in question is in the gdi32.dll file that is used by a significant amount of programs.
Google gives company 90 days after disclosure of vulnerabilities to fix the issue.
The issue was that records failed to perform comprehensive sanitization.
Weve discovered that not all of the DIB-related problems are gone, he said.
it’s possible for you to read the full reporthere.
source: www.techworm.net