The vulnerability in question is in the gdi32.dll file that is used by a significant amount of programs.

Google gives company 90 days after disclosure of vulnerabilities to fix the issue.

The issue was that records failed to perform comprehensive sanitization.

Google publicly discloses zero day vulnerability after Microsoft fails to patch it in time

Weve discovered that not all of the DIB-related problems are gone, he said.

it’s possible for you to read the full reporthere.

spot_img

source: www.techworm.net