[Pkg-phototools-devel] Bug#734238: Fix for CVE-2013-6045 breaks decoding of chroma-subsampled images

Raphael Geissert geissert at debian.org
Mon Jan 6 11:03:01 UTC 2014


Hi,

For further reference, this is the change made with segfault1.dpatch

I'm not sure how it is that openjpeg even works with that image, as
there are some parts of the code that really assume that all
components have at least the number of blocks of the first component.
Possibly making it write to memory outside the allocated buffer.

Cheers,
-- 
Raphael Geissert - Debian Developer
www.debian.org - get.debian.net



More information about the Pkg-phototools-devel mailing list