oss-sec mailing list archives

libytnef: CVE-2017-9058: heap-based buffer overflow in SIZECHECK (ytnef.c)


From: Sébastien Delafond <seb () debian org>
Date: Thu, 18 May 2017 06:10:57 +0000 (UTC)

Hello,

CVE-2017-9058 has been assigned for the following vulnerability:

  https://bugs.debian.org/862556

This was discovered by bingosxs () qq com, and leads to a crash because of
an incorrect boundary check.

Cheers,

--Seb


Current thread: