diff options
author | Werner Lemberg <wl@gnu.org> | 2020-11-19 19:18:32 +0000 |
---|---|---|
committer | Moonchild <moonchild@palemoon.org> | 2020-11-19 22:47:19 +0000 |
commit | 459c36b9df31e28e04e49243754aa2ebcd02a92c (patch) | |
tree | 7b07327c2b15a5cec5460a0f0e7c41cebc7c7d1b /js/src/frontend/FullParseHandler.h | |
parent | c9508464d5f54d57e89b6bbfbcd2b903bfd9edb2 (diff) | |
download | UXP-459c36b9df31e28e04e49243754aa2ebcd02a92c.tar UXP-459c36b9df31e28e04e49243754aa2ebcd02a92c.tar.gz UXP-459c36b9df31e28e04e49243754aa2ebcd02a92c.tar.lz UXP-459c36b9df31e28e04e49243754aa2ebcd02a92c.tar.xz UXP-459c36b9df31e28e04e49243754aa2ebcd02a92c.zip |
[sfnt] Fix heap buffer overflow.
This is CVE-2020-15999.
* src/sfnt/pngshim.c (Load_SBit_Png): Test bitmap size earlier.
Diffstat (limited to 'js/src/frontend/FullParseHandler.h')
0 files changed, 0 insertions, 0 deletions