Hide Forgot
A heap corruption due to integer overflow will occur in gc while parsing maliciously crafted input. Upstream bug: https://github.com/ivmai/bdwgc/issues/135 Upstream fixes: https://github.com/ivmai/bdwgc/commit/4e1a6f9d8f2a49403bbd00b8c8e5324048fb84d4 https://github.com/ivmai/bdwgc/commit/7292c02fac2066d39dd1bcc37d1a7054fd1e32ee https://github.com/ivmai/bdwgc/commit/552ad0834672fed86ada6430150ef9ebdd3f54d7 References: http://seclists.org/oss-sec/2016/q4/321
Created gc tracking bugs for this issue: Affects: fedora-all [bug 1399675] Affects: epel-5 [bug 1399676]