VDB
GCVE-110-MAGEIA-2018-44
GCVE-110-MAGEIA-2018-44
Advisory Published
It is possible to trigger heap overflows due to an integer overflow while
parsing images. The integer overflow occurs because the chosen limit
0x10000 for dimensions is too large for 32 bit systems, because each pixel
takes 4 bytes. Properly chosen values allow an overflow which in turn will
lead to less allocated memory than needed for subsequent reads
(rhbz#1522638).
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | wayland | 0 (affected), 1.11.0-1.1.mga6 (unaffected), 0 (affected), 1.11.0-1.1.mga6 (unaffected) | — |
| Mageia | wayland | 0 (affected), 1.6.0-2.1.mga5 (unaffected), 0 (affected), 1.6.0-2.1.mga5 (unaffected) | — |
| Mageia | mesa | 0 (affected), 17.3.6-1.mga6 (unaffected) | — |
References
mesa 17.3.6 maintenance release
advisory
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.