A vulnerability in GTK-2/GTK-3 codebases allowed for remote code execution when an adversary injected a malicious library to a GTK application using a drive-by-download attack.
Posted on 13 December 2024