Ars Technica: CD-indexing cue files are the core of a serious Linux remote code exploit

«Libcue is typically a rather quiet project, maintained largely by Ilya Lipnitskiy alone. It illustrates, yet again, the vast amounts of technological infrastructure underpinned by tiny, unpaid projects

https://arstechnica.com/information-technology/2023/10/one-click-remote-code-exploit-in-cd-cue-files-affects-most-gnome-based-linux-distros/

(As I read it, this is NOT remote code execution, just corruption (and crash).)

Leave a comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.