VDB

GCVE-110-MAGEIA-2018-44

GCVE-110-MAGEIA-2018-44
Advisory Published
Vulnetix · Advisory published January 3, 2018
It is possible to trigger heap overflows due to an integer overflow while parsing images. The integer overflow occurs because the chosen limit 0x10000 for dimensions is too large for 32 bit systems, because each pixel takes 4 bytes. Properly chosen values allow an overflow which in turn will lead to less allocated memory than needed for subsequent reads (rhbz#1522638).

Affected Products

VendorProductVersionsPlatforms
Mageiawayland0 (affected), 1.11.0-1.1.mga6 (unaffected), 0 (affected), 1.11.0-1.1.mga6 (unaffected)
Mageiawayland0 (affected), 1.6.0-2.1.mga5 (unaffected), 0 (affected), 1.6.0-2.1.mga5 (unaffected)
Mageiamesa0 (affected), 17.3.6-1.mga6 (unaffected)

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›