Opened 4 years ago

Closed 4 years ago

#6253 closed defect (fixed)

XPM: vulnerabilities in decoding

Reported by: Even Rouault Owned by: Even Rouault
Priority: normal Milestone: 1.11.4
Component: GDAL_Raster Version: unspecified
Severity: normal Keywords: xpm
Cc:

Description

Lack of validation of dataset dimensions, color count, etc... Potential out-of-buffer write & reads too

Change History (1)

comment:1 Changed 4 years ago by Even Rouault

Milestone: 1.11.4
Resolution: fixed
Status: newclosed

trunk r31997, branches/2.0 r31998, branches/1.11 r31999 "XPM: fix vulnerabilities in reading (#6253)"

Note: See TracTickets for help on using tickets.