Описание
Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libwebp | fixed | 0.5.1-3 | package | |
| libwebp | not-affected | wheezy | package |
Примечания
https://chromium.googlesource.com/webm/libwebp/+/e2affacc35f1df6cc3b1a9fa0ceff5ce2d0cce83
Report: https://bugs.chromium.org/p/webp/issues/detail?id=314 (private)
For libwebp only in examples, but other projects seem to use the gifdec.c
Origin of the file seems to be from libav
Связанные уязвимости
Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.
Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.
Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.
Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.