[cairo-bugs] [Bug 82431] New: CVE-2014-5116: large string null pointer dereference in cairo_image_surface_get_data

bugzilla-daemon at freedesktop.org bugzilla-daemon at freedesktop.org
Sun Aug 10 13:51:30 PDT 2014


https://bugs.freedesktop.org/show_bug.cgi?id=82431

          Priority: high
            Bug ID: 82431
          Assignee: chris at chris-wilson.co.uk
           Summary: CVE-2014-5116: large string null pointer dereference
                    in cairo_image_surface_get_data
        QA Contact: cairo-bugs at cairographics.org
          Severity: major
    Classification: Unclassified
                OS: All
          Reporter: michael.s.gilbert at gmail.com
               URL: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-201
                    4-5116
          Hardware: All
            Status: NEW
           Version: 1.12.16
         Component: general
           Product: cairo

The subject issue was recently disclosed.  Please see reproducer at the
exploit-db link.

-- 
You are receiving this mail because:
You are the QA Contact for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.cairographics.org/archives/cairo-bugs/attachments/20140810/76c347dd/attachment.html>


More information about the cairo-bugs mailing list