diff options
author | Alan Coopersmith <alan.coopersmith@oracle.com> | 2013-03-09 13:48:28 -0800 |
---|---|---|
committer | Alan Coopersmith <alan.coopersmith@oracle.com> | 2013-05-04 16:35:55 -0700 |
commit | b6fe1a7af34ea620e002fc453f9c5eacf7db3969 (patch) | |
tree | f8efc28f8b1ea069ede08e6ae755c3ab42c12ceb /README | |
parent | 78e11efe70d00063c830475eaaaa42f19380755d (diff) |
integer overflow in DMXGetWindowAttributes() [CVE-2013-1992 2/3]
If the server provided screenCount causes integer overflow when
multiplied by the size of each array element, a smaller buffer
would be allocated than the amount of data written to it.
Reported-by: Ilja Van Sprundel <ivansprundel@ioactive.com>
Signed-off-by: Alan Coopersmith <alan.coopersmith@oracle.com>
Diffstat (limited to 'README')
0 files changed, 0 insertions, 0 deletions