Menu

#358 CVE-2016-2317 - SVG heap/stack buffer overflows

v1.0_(example)
closed
None
5
2016-04-24
2016-03-20
No

CVE-2016-2317 is regarding buffer overflow issues in the SVG reader found by Gustavo Grieco via fuzz testing. Full details are in the attached tarball.

1 Attachments

Discussion

  • Bob Friesenhahn

    Bob Friesenhahn - 2016-03-20
    • summary: CVE-2016-2317 - SVG SEGV --> CVE-2016-2317 - SVG heap/stack buffer overflows
    • Description has changed:

    Diff:

    --- old
    +++ new
    @@ -1 +1 @@
    -CVE-2016-2317 is regarding segmentation violation issues in the SVG reader found by Gustavo Grieco via fuzz testing.  Full details are in the attached tarball.
    +CVE-2016-2317 is regarding buffer overflow issues in the SVG reader found by Gustavo Grieco via fuzz testing.  Full details are in the attached tarball.
    
     
  • Bob Friesenhahn

    Bob Friesenhahn - 2016-03-25

    aaphrbkwwe.svg.4495884156523242589 is fixed
    aaphrbkwwe.svg.-632425326915265752 is fixed

     
  • Bob Friesenhahn

    Bob Friesenhahn - 2016-04-24

    aaphrbkwwe.svg.-1114777018469422437 is fixed

     
  • Bob Friesenhahn

    Bob Friesenhahn - 2016-04-24
    • status: open --> closed
     

Log in to post a comment.

MongoDB Logo MongoDB