#361 patch for CVE-2013-1438 -- div. by zero, inf. loop, null-ptr dereference

closed-fixed
nobody
None
5
2013-12-07
2013-12-06
Nils Philippsen
No

Hi, find attached a patch against current CVS HEAD which hardens ufraw against corrupt image files that might trigger a division by zero, an infinite loop, or a null pointer dereference otherwise.

1 Attachments

Discussion

  • Hi Nils.

    Thanks for the patch. I have commited it to the cvs head.

    Have you sent the patch to Dave Coffin to be included in the original DCRaw code?

    Regards,
    Niels Kristian

     
    • Have you sent the patch to Dave Coffin to be included in the original DCRaw code?

      Yes, I have.

       
    • Have you sent the patch to Dave Coffin to be included in the original DCRaw code?

      I have.

       
    • Status: open --> closed-fixed