Hide Forgot
An issue was discovered in icoutils. A buffer overflow was observed in the "extract_icons" function in the "extract.c" sourcefile. This issue can be triggered by processing a corrupted ico file and will result in an icotool crash.
Created attachment 1250878 [details] Reporter writeup
Created icoutils tracking bugs for this issue: Affects: fedora-all [bug 1422911]
Created attachment 1256393 [details] fixes memory issue triggered by number overflow This patch should fix the issue.
Hi Martin Has this been forwarded to upstream? Regards, Salvatore
Hi Salvatore, yes, I sent the patches to upstream but haven't received a reply yet.
Created icoutils tracking bugs for this issue: Affects: epel-6 [bug 1430609]
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2017:0837 https://rhn.redhat.com/errata/RHSA-2017-0837.html